Threat Level: green Handler on Duty: Didier Stevens

SANS ISC: Quicktime patches for Mac and Windows - SANS Internet Storm Center SANS ISC InfoSec Forums


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
Quicktime patches for Mac and Windows
Is Apple hiding behind Microsoft's advisories?  Seems like Apple has been conveniently releasing security advisories on the same day as Microsoft's.  Conspiracy theory?  You be the judge.

Anyway, Apple released a security update to Quicktime.  http://docs.info.apple.com/article.html?artnum=303101  There are multiple vulnerabilities patched.  To summarize the advisory: A maliciously-crafted GIF/TIFF/TGA/QTIF image or multimedia file may result in arbitrary code execution.  Well that pretty much covers the whole web browsing thing. 

Given the week we've had, I suppose that everyone should go back to using netcat for surfing the web.


Kyle

112 Posts

Sign Up for Free or Log In to start participating in the conversation!