02/06/2008, 6:00pm, EST
Wednesday, February 6th
QuickTime 7.4.1 improves security
Apple today released QuickTime 7.4.1 for Mac OS X Panther, Tiger, and Leopard as well as Microsoft Windows. The update beefs up security while improving compatibility with third-party applications. Users who don't update to QuickTime 7.4.1 could visit a maliciously crafted website that could lead to unexpected application termination, or arbitrary code execution.
"A heap buffer overflow exists in QuickTime's handling of HTTP responses when RTSP tunneling is enabled. By enticing a user to visit a maliciously crafted webpage, an attacker may cause an unexpected application termination or arbitrary code execution," Apple said. "This update addresses the issue through improved bounds checking."
Filed under: Apple, security
Other story tags: update, QuickTime
,
, 4
,
,
,
,
,

subscribe to comments
for this article
I don't care about overflow - does it fix everything it broke in 7.4?? Do I get FinalCut and AfterEffects back??
guess I'm sticking with 7.3.1 ....
Until I'm 100% sure Apple fixed these problems, I'm not risking 7.4.anything.
According to QuickTime 7.4.1 users on VersionTracker this update fixed these problems. Perian is also updated...