Apple releases seven QuickTime fixes

By

Apple has patched seven vulnerabilities in the latest version of QuickTime affecting the Windows and MacOS X versions of the media player software.

Apple releases seven QuickTime fixes
Each of the vulnerabilities affects users of MacOS 10.3.9, 10.4.9 and 10.5 as well as Windows XP and Vista.

Six of the vulnerabilities could allow attackers to remotely execute code on the targeted machine.

Three of the remote code execution vulnerabilities could be exploited when the user launches a specially-crafted movie file.

Two are exploited by way of malformed Pict files, and one can be targeted by way of a specially-crafted QuickTime VR file.

The update also addresses a flaw in the way QuickTime handles untrusted Java applets. Apple said that this could allow an attacker to run malicious Java code on the user's machine.

The update fixes the issue by preventing untrusted applets from running QuickTime's Java components.

Users can obtain the update through Apple's Software Update utility or the Apple Downloads site.
Got a news tip for our journalists? Share it with us anonymously here.
Copyright ©v3.co.uk
Tags:

Most Read Articles

"VoidProxy" PhishKit targets Google and Microsoft users

"VoidProxy" PhishKit targets Google and Microsoft users

First npm worm "Shai-Hulud" released in supply chain attack

First npm worm "Shai-Hulud" released in supply chain attack

Apple adds "mercenary spyware" protection to new A19 chip

Apple adds "mercenary spyware" protection to new A19 chip

Phishing attack nets enormous npm supply chain compromise

Phishing attack nets enormous npm supply chain compromise

Log In

  |  Forgot your password?