Pixalo Photography Community  

Go Back   Pixalo Photography Community > Photography Forums > News
Register Search Today's Posts Mark Forums Read

News Discuss QuickTime 'Extremely Critical' security flaw revealed...Security researchers have warned that attack code which targets an unpatched bug in Apple Inc.'s QuickTime is in the public ...

Welcome to the Pixalo Photography Community. As a Guest you are free to browse the site, but see what extras you get as a Member here.


Reply
 
LinkBack Thread Tools Display Modes
Old 28-11-2007, 06:54   #1 (permalink)
Pixalo Crew
 
Steve's Avatar
 
Join Date: Jan 2005
Location: An Englishman living in Germany
Posts: 16,473
Steve is a jewel in the rough
Steve is a jewel in the roughSteve is a jewel in the rough

Image editing O.K.
User's Gallery
Users Camera Equipment List
QuickTime 'Extremely Critical' security flaw revealed

Security researchers have warned that attack code which targets an unpatched bug in Apple Inc.'s QuickTime is in the public domain; in-the-wild attacks against systems running Windows XP and Vista and possibly Mac OSX are probably being prepared by malicious hacker groups.

The critical bug in QuickTime 7.2 and 7.3 (and perhaps earlier editions as well) is in the player's handling of the Real Time Streaming Protocol (RTSP), an audio/video streaming standard. It is rated by Secunia as ' Extremely Critical'. The vulnerability is confirmed in version 7.3 of QuickTIme. Other versions may also be affected.

According to alerts posted by Symantec Corp. and the U.S. Computer Emergency Readiness Team (US-CERT), attackers can exploit the flaw by duping users into visiting malicious or compromised Web sites hosting specially-crafted streaming content, or by convincing them to open a rigged QTL file attached to an e-mail message.

A successful exploit would let the attacker install additional Malware -- spyware or a spambot, say -- or cull the system for information like passwords. An attack that failed would likely only crash QuickTime on Windows and Mac OSX systems.

It appears from reports that Firefox is especially susceptible to this exploit, Internet Explorer and Safari browsers less so.

Be cautious and only accept streaming video from known safe websites.
__________________
.......__o
.......\<,
....( )/ ( )
Steve is online now  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Similar Threads
Thread Thread Starter Forum Replies Last Post
Highly Critical Adobe Reader security vulnerability Steve Computer hardware, software, networking and internet 9 04-01-2007 15:37
Microsoft Office has "extremely critical" hole orangepeel Computer hardware, software, networking and internet 8 15-12-2006 13:54
Extremely critical exploit in active X controls in IE6 and IE7 Steve Computer hardware, software, networking and internet 0 05-11-2006 20:52
Firefox 2 security gets critical attention Steve Computer hardware, software, networking and internet 0 04-11-2006 09:43
Another Critical security Flaw in Internet explorer Steve Computer hardware, software, networking and internet 11 29-09-2006 15:02

All times are GMT +1. The time now is 08:44.


vBulletin Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
ReviewPost & PhotoPost vB3 Enhanced, Copyright 2003-2006 All Enthusiast, Inc.
SEO by vBSEO 3.2.0
Copyright © 2006 - 2008 Pixalo.com

New York Hotels | Loan | Refinance | Loans | Mortgages

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96