2008’s First QuickTime Flaw Discovered
By Anne Shaw
14:28, January 12th 2008
49 votes
Vote this story
2008’s First QuickTime Flaw Discovered

Apple’s QuickTime media player features security glitches once again. 2008’s first QuickTime security flaw was discovered recently and it affects how the media player handles the Real Time Streaming Protocol (RTSP). The flaw may allow any attacker to execute arbitrary code or cause a denial-of-service attack on users’ systems.

Taking into account that the new condition is only partially different from the QuickTime RTSP flaw reported in December 2007, the former can occur even on a fully patched version of Apple’s player (7.3.1), running on Windows and possibly on Apple’s own operating system, Mac OS X.

The most recent QuickTime security flaw was discovered by an Italian security researcher called Luigi Auriemma, who also provided an exploit example on his web site. “For exploiting this vulnerability is only needed that an user follows a rtsp:// link, if the port 554 of the server is closed QuickTime will automatically change the transport and will try the HTTP protocol on port 80, the 404 error message of the server (other error numbers are valid too) will be visualized in the LCD-like screen,” Luigi Auriemma explained.

Apple has not yet announced when a new patch will be released.



© 2007 - 2008 - eFluxMedia
dotclear

Other News in

Internet Explorer Is Starting to Lose Ground

Internet Explorer Is Starting to Lose Ground

A new study released by Net Applications have shown that Microsoft’s Internet Explorer is starting to lose market share in favor of its two biggest competitors, Mozilla’s Firefox, and Apple’s...

Microsoft Equipt: Subscription Software More Expensive than Retail

Microsoft Equipt: Subscription Software More Expensive than Retail

Microsoft has launched the long-rumored subscription service to an all-in-one software suite, which combines Microsoft Office Home and Student 2007, Office Live Workspace, Windows Live OneCare,...

Viacom-YouTube Ruling Triggers Far-Reaching Privacy Concerns

Viacom-YouTube Ruling Triggers Far-Reaching Privacy Concerns

The ruling which demands Google to hand over the YouTube access logs, which are to show the actual extent of copyright infringement going on the popular site, has sparked outrage from privacy groups,...

Google Homepage Adds Privacy Link

Google Homepage Adds Privacy Link

Google's homepage at google.com has been changed: the search engine leader has decided that a privacy link, which leads to the company's straightforward Privacy Center, should be fit somewhere on its...

Is Powerset And The Semantic Search The Right Choice For Microsoft?

Is Powerset And The Semantic Search The Right Choice For Microsoft?

Desperate to reduce the gap between its search engine, Live Search, and omnipresent Google, Microsoft has been searching lately for the best solution. In just two months, Microsoft announced various...

dotclear
Latest videos in Technology
Microsoft after Gates
Mobile precautions urged
What Yahoo turned down
iPhones get faster, cheaper
Navigating social media

dotclear
Technology You are here: Technology
» Technology   » Gadgets   » Video Games   
E-mail To A Friend Print RSS Text size: Decrease font size Increase font size
dotclear
dotclear
dotclear
Most Popular in Technology
Google Homepage Adds Privacy LinkGoogle Homepage Adds Privacy Link

» read full story
dotclear

Interested In This Topic?

News Alert will keep you informed. Find out more.
dotclear
Photos Gallery
dotclear
Today's Latest News
Kent Couch Hopes To Fly 300 Mile In Lawn Chair Carried by BalloonsKent Couch Hopes To Fly 300 Mile In Lawn Chair Carried by Balloons

» read full story
dotclear