CVE-2008-3634

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
11/09/2008
Last modified:
09/04/2025

Description

Apple iTunes before 8.0 on Mac OS X 10.4.11, when iTunes Music Sharing is enabled but blocked by the host-based firewall, presents misleading information about firewall security, which might allow remote attackers to leverage an exposure that would be absent if the administrator were given better information.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:apple:mac_os_x:10.4.11:*:*:*:*:*:*:*
cpe:2.3:o:apple:mac_os_x_server:10.4.11:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:* 7.7.1 (including)
cpe:2.3:a:apple:itunes:1.0:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:1.1:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:1.1.2:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:2.0:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:2.0.3:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:2.0.4:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:3.0:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:3.0.1:*:*:*:*:*:*:*