macworld: news: apple posts quicktime security fix
macworld: news: apple posts quicktime security fix
skip navigation
home
news
latest stories
news summary
the week’s top stories
macworld widget
products
apple hardware
ipod @ playlistmag.com
digital cameras
displays
printers
mac gems
latest reviews
superguides
iphone
weblogs
mac 911
editors' notes
mac gems
game room
mac os x hints
macworld podcasts
the ipod blog
mac word
creative notes
macworld video
mobile mac
gadgetbox
iphone
mac help
mac 911
how-to
os x
mac os x hints
magazine
current issue
past issues
subscriptions
customer service
feeds
newsletters
shop
discuss
search
also on macworld.com
first look: bento personal database software
introducing speedmark 5
top stories
adobe ceo chizen stepping down
apple releases iphone update 1.1.2
vuescan updated for leopard
gates oversees his last annual meeting as chairman
more
macworld news feed
xml feed
what’s this?
other rss feeds
news archive
previous news items
november 06, 2007 7:32 am et
idg news service
print
apple posts quicktime security fix
by robert mcmillan, idg news service
apple has released an update to its quicktime media player, fixing a number of critical security bugs in the software.
the quicktime 7.3 update, released monday, fixes seven bugs in the software. six of the flaws could allow an attacker to run unauthorized software on a victim’s pc. to do this, the attacker would first need to trick the victim into viewing a maliciously crafted movie or image file, apple said.
the seventh flaw lies in quicktime for java, and it could be used to gain access to sensitive information or to run java applets with elevated privileges, apple said. the quicktime patches issued monday are for the latest versions of the mac os x operating system as well as windows vista and xp.
none of the bugs had been previously disclosed to the public, said andrew storms, director of security operations with ncircle network security, via instant message.
in the past year, quicktime has been closely scrutinized by security researchers, and this latest update was apple’s fifth quicktime security fix for the year. the previous update, quicktime 7.2, released in july, featured eight bug-fixes.
apple credited outside researchers from companies like adobe, verisign and 3com for reporting the bugs it patched monday.
“quicktime seems to have become a new flavor of the month for researchers,” storms said. “i think part of the reason for the attention is that its cross platform. many of the attacks will work on both windows and mac, and with apple’s market share in the pc market growing, there won’t be any let-down to the attention that the hackers are giving apple.”
14 comments on this story
email this story to a friend
print
related stories
news
hackers sneak tricks into myspace band pages maccentral, november 01, 2007
security geeks say leopard needs fixing maccentral, october 30, 2007
reviews
pgp desktop home 9 macworld, august 15, 2005
features
walking the walk macworld, october 12, 2007
how-to
how to: discover malware before installing macworld, november 01, 2007
weblogs
mac 911: getting receipts macworld, september 26, 2007
mac 911: the incessant password prompt macworld, september 24, 2007
first looks
trojan horse warning: what you need to know macworld, october 31, 2007
recent stories
tuesday pc world: how the zune measures up
tuesday introducing speedmark 5
tuesday fetch ftp update dresses up for leopard
tuesday gates oversees his last annual meeting as chairman
tuesday cha-ching update adds local backup
tuesday first look: bento personal database software
tuesday missing sync for psp adds leopard support
tuesday filemaker introduces bento personal database
tuesday virtual programming updates games for leopard
tuesday mac os x hints: zooming in quick look mode
tuesday vuescan updated for leopard
tuesday the ipod blog: ipod touch 1.1.2 and back again
tuesday realbasic updated for leopard
tuesday marvel comics offers digital archive subscriptions
tuesday yourview shares digital video
enter your trial subscription and macworld will rush you a free trial issue. plus, you'll receive a bonus cd-rom with your paid subscription! if you like macworld, pay just $19.97 for 11 more issues (12 in all). otherwise, write "cancel" on the bill, return it, and owe nothing. the first issue is yours to keep no matter what.
name:
city:
address 1:
state:
zip code:
address 2:
e-mail (optional):
canadian orders | international orders | digital orders | customer service
idg network:
cio
computerworld
cso
gamepro
gamerhelp
games.net
infoworld
itworld canada
javaworld
linuxworld
macwelt
sveriges macworld
macworld españa
macworld uk
network world
pc world
techworld
idg connect
about us
contact us
advertise
press releases
jobs
macworld expo
macmania
© 1994-2007 mac publishing, llc. privacy policy
terms of service
community standards
Acceuil
suivante
macworld: news: apple posts quicktime security fix Macworld: News: Apple releases fix for iMac freezing issue The new urgency to fix online privacy Tech News on ZDNet The Beyonce Fix Intro.... Let's Fix britain IEBlog : Fix My Settings in IE7 GRC FIX-CIH Virus Recovery SubZero Fix PSTwo - : FOXCHIP : Modification et Réparation des ... Debian: New phpmyadmin packages fix cross-site scripting - The ... Mandriva: Updated netpbm packages fix vulnerability - The ... How to Fix No Child Left Behind - TIME Film Fix v1.0 JScreenFix - Fix stuck pixels and screen burn-in Mac OS X and iPod Troubleshooting, Support, and Help - MacFixIt Braun 1775 FREE Control /FIX 100 : avis de consommateurs ... Macworld: News: Word fix corrects quit on print error Macworld: Mac 911: Bugs & Fixes: Fix Leopard glitches Housse Sit Fix pour coussin 3 en 1, Housse Sit Fix - Fnac éveil et ... Blagojevich floats new temporary fix :: CHICAGO SUN-TIMES ... Here's hoping fix is in :: CHICAGO SUN-TIMES :: Mike Mulligan Fix-it Index Page Functions, events, club, bar, lounge, entertainment, Venues ... Fix the Fells - Home Excel Recovery Tool - Fix & Repair Excel File - Corrupt XLS Repair ... Fast Fix Jewelry and Watch Repairs B2BITS — High Performance FIX Solutions Definition: fix from Online Medical Dictionary Télécharger Object Fix Zip - Zebulon.fr : téléchargement du ... Aimfix - Jayloden.com BBC SPORT Tennis Llodra reveals match-fix approach BBC NEWS Science/Nature Lovelock urges ocean climate fix SmitFraudFix QuickFix: Open Source FIX Engine Free Registry Fix - Fix My Registry Candy- Chocolate- A Candy Fix Lettres édifiantes et curieuses, écrites des missions étrangères. - Résultats Google Recherche de Livres Water fix proposed in Southeast - Weather - MSNBC.com OpenBSD 4.0 errata Reviews: Video Game Reviews Are Broken, Please Fix System Downloads : DHCP Fix /// AnalogX How to fix broken Firefox extensions Free Software Magazine molly.com » So How Do We Fix the Web, Really? PKH-fix - Prozeßkostenhilfeberechnung macosxhints.com - 10.5: A fix for broken video chats and screen ... Acheter Housse pouf Sit Fix... avec eco-SAPIENS MacNN Apple updates iMac fix for Tiger users MacNN Apple updates iMac fix for Tiger users Madeleine Fix-Hansen :: Design :: Illustration :: Media ... How not to fix HTML ¶ Personal Weblog of Joe Clark, Toronto Histoire philosophique et politique des établissemens et du ... - Résultats Google Recherche de Livres Markdown Fix Registry Repair, Clean Up & File Fix for Windows PNG in Internet Explorer: How to Use SF Gate: Columnists: Mark Morford Archive PC Fix Error Doctor Registry Cleaner PC Diagnostics PC Checkup FIX-IT - bedrijvengids - handelsgids - webdesign - Pc repair ... Wiki Autrans - Fix Fix all Ajax cross-browser problems then deploy IPython fix for Leopard - O'Reilly ONLamp Blog Ajaxian » IE’s Memory Leak Fix Greatly Exaggerated Object Fix Zip - Freeware for repairing damaged ZIP archives with ...