toggle

AAPL Stock: 562.29 ( -3.03 )

QuickTime vulnerability surfaces

updated 04:55 pm EDT, Mon September 25, 2006

QuickTime vulnerability


SecurityFocus has warned of an arbitrary-script-execution weakness in Apple's QuickTime plug-in when executing QuickTime Media Link files. Attackers can exploit the issue to execute arbitrary script code -- which is limited to the context of the affected application -- and load local content in a user's Web browser, which could lead to further security issues. QuickTime 7.1.3 is known to be vulnerable, while other versions of QuickTime may also be at risk. Apple has yet to issue patches for the vulnerability, and two proof-of-concept QuickTime Media Link files are already available using the .mp3 file extension.


by MacNN Staff

toggle

Comments

  1. Rosyna

    Forum Regular

    Joined: Aug 2001

    0

    Everybody panic!

    Oh noes, it shows a dialog. We're all doomed. Doooommmeed!

Login Here

Not a member of the MacNN forums? Register now for free.

 
close
Photo
toggle

Network Headlines

toggle

Most Popular

MacNN Sponsor

Recent Reviews

iHome iW2 AirPlay speaker

iHome generally isn't known as a luxury brand when it comes to audio, but it is prolific -- the company's docks and speakers are every ...

Logitech Ultrathin Keyboard Cover

One of the iPad's main weaknesses has always been productivity. It's not a question of apps; while it has taken a little time for a na ...

Logitech UE Air Speaker

If maybe a little more slowly than Apple would like, AirPlay is becoming a staple of the wireless speaker market for iOS devices. The ...

toggle

Most Commented