AfterDawn: Tech news

Apple patches Windows Quicktime flaw

Written by James Delahunty @ 04 Oct 2007 5:44 User comments (4)

Apple patches Windows Quicktime flaw Apple Inc. has issued updates that address security concerns with the Quicktime multimedia software for the Windows operating systems. The patch is for users of QuickTime v7.2 software, running Microsoft Windows Vista or Windows XP SP2. It addresses the vulnerability in CVE-2007-4673 which could allow an attacker to take control of a victim's PC.
The vulnerability is exploited with maliciously crafted files which are opened with QuickTime by unsuspecting users, leading to arbitrary code execution. "A command injection issue exists in QuickTime's handling of URLs in the qtnext field> in files with QTL content. By enticing a user to open a specially crafted file, an attacker may cause an application to be launched with controlled command line arguments, which may lead to arbitrary code execution," Apple describes.

The update is available at: http://www.apple.com/support/downloads/



Source:
News.com

Previous Next  

4 user comments

111.10.2007 13:20

Thanxs for the heads up i may update quicktime this weekend :)

211.10.2007 19:23

Although, I may never know...It's interesting how my computer coincidentally got infected with a virus and crashed just a couple of days ago. Apple is slipping. First, THIS; and then this flaw.

311.10.2007 19:41

IMHO anything Apple IS a virus. Have you ever tried to remove Quicktime? I use QTA.

412.10.2007 08:43

At olyteddy,
I uninstalled QuickTime right away as soon as I say this post.

Comments have been disabled for this article.

Latest news

VLC hits milestone: over 5 billion downloads VLC hits milestone: over 5 billion downloads (16 Mar 2024 4:31)
VLC Media Player, the versatile video-software powerhouse, has achieved a remarkable feat: it has been downloaded over 5 billion times.
2 user comments
Sideloading apps to Android gets easier, as Google settles its lawsuit Sideloading apps to Android gets easier, as Google settles its lawsuit (19 Dec 2023 11:09)
Google settled its lawsuit in September 2023, and one of the settlement terms was that the way applications are installed on Android from outside the Google Play Store must become simpler. In the future, installing APK files will be easier.
8 user comments
Roomba Combo j7+ review - Clever trick allows robot vacuum finally to tackle home with rugs and carpets Roomba Combo j7+ review - Clever trick allows robot vacuum finally to tackle home with rugs and carpets (06 Jun 2023 9:19)
Roomba Combo j7+ is the very first Roomba model to combine robot vacuum with mopping features. And Roomba Combo j7+ does all that with a very clever trick, which tackles the problem with mopping and carpets. But is it any good? We found out.
Neato, the robot vacuum company, ends its operations Neato, the robot vacuum company, ends its operations (02 May 2023 3:38)
Neato Robotics has ceased its operations. American robot vacuum pioneer founded in 2005 has finally called it quits and company will cease its operations and sales. Only a skeleton crew will remain who will keep the servers running until 2028.
5 user comments
How to Send Messages to Yourself on WhatsApp How to Send Messages to Yourself on WhatsApp (20 Mar 2023 1:25)
The world's most popular messaging platform, Meta-owned WhatsApp has enabled sending messages to yourself. While at first, this might seem like an odd feature, it can be very useful in a lot of situations. ....
18 user comments

News archive