CVE-2013-1014 Information
Feb 14, 2021
cve
Description
Apple iTunes before 11.0.3 does not properly verify X.509 certificates which allows man-in-the-middle attackers to spoof HTTPS servers via an arbitrary valid certificate.
Reference
http://lists.apple.com/archives/security-announce/2013/May/msg00000.html http://support.apple.com/kb/HT5766 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A17605
Share on: