CVE-2022-26774
Published May 18, 2022
·Updated
A logic issue was addressed with improved state management. This issue is fixed in iTunes 12.12.4 for Windows. A local attacker may be able to elevate their privileges.
Credit
Sai Wynn Myat@@404death
Affected Software
2 affected componentsFixes available
apple Itunes Windows<12.12.4
apple iTunes for Windows<12.12.4
12.12.4
Event History
May 26, 2022
CVE Published
via MITRE·07:28 PM
Data Sourced
via MITRE·07:28 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this iTunes vulnerability?
The vulnerability ID for this iTunes vulnerability is CVE-2022-26774.
2
What is the title of this vulnerability?
The title of this vulnerability is "A logic issue was addressed with improved state management."
3
What is the severity of CVE-2022-26774?
The severity of CVE-2022-26774 is high with a severity value of 7.8.
4
How can the vulnerability be fixed?
The vulnerability can be fixed by updating iTunes to version 12.12.4 for Windows.
5
Who is affected by this vulnerability?
iTunes for Windows users with versions up to but not including 12.12.4 are affected by this vulnerability.