Apple patches QuickTime for 10 security holes

Powered by SC Magazine
 

Apple has released an updated version of its popular QuickTime software.

Version 7.6.2 closes 10 vulnerabilities, all of which could have been exploited to execute arbitrary code, according to an advisory. Attackers would have spread their exploits by persuading users to open maliciously-crafted movie files or images.

In January, Apple pushed out fixes for seven QuickTime bugs. Experts have said attackers prefer taking advantage of these type of client-side problems because many users trust popular multimedia software.

Apple has also delivered the latest update to iTunes, according to a second advisory. Version 8.2 patches for one vulnerability, a stack buffer overflow issue that could be exploited if a user visits a malicious website.

This was the second iTunes update of the year, following a patch in March.


See original article on scmagazineus.com

Copyright © SC Magazine, US edition


Apple patches QuickTime for 10 security holes
 
 
 
Top Stories
Five zero-cost ways to improve MySQL performance
How to easily boost MySQL throughput by up to 5x.
 
The big winners from Defence’s back-office IT refresh
Updated: The full list of subcontractors.
 
Tracking the year of CIO churn
[Blog post] Who shone through in 12 months of disruption?
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest Comments
Polls
Which is the most prevalent cyber attack method your organisation faces?




   |   View results
Phishing and social engineering
  68%
 
Advanced persistent threats
  3%
 
Unpatched or unsupported software vulnerabilities
  11%
 
Denial of service attacks
  6%
 
Insider threats
  12%
TOTAL VOTES: 993

Vote