New Quicktime vulnerability allows malicious attack

Dave Horvath
2 Jan 2007 10:34

A newly discovered vulnerability in Apple's Quicktime application could allow your computer to be open to specific attacks. Currently unpatched, this vulnerability appears to effect version 7.1.3.100 for the Windows client and is reported to effect the Macintosh OSX version as well.
The vulnerability uses a flaw in the RTSP (Real Time Streaming Protocol) handling part of the code. If a user were to retrieve a streaming video that contained more than 256 bytes in the "src" portion of the URL, this would then compromise the machine. A successful attack then allows malicious code to be processed on the user's computer. No word yet on a patch.
Source:
Secunia

More from us
We use cookies to improve our service.