|
|
posted in security
on 8 Jan 07 | about news
|
QuickTime Issues Still Plague Websites
 | Similar to the issue that allowed the MySpace worm to parade through the popular social networking site, another flaw in Apple's QuickTime can be exploited.
Windows and Mac users are vulnerable to a pair of security issues with QuickTime. Any website that permits the embedding of QuickTime content could provide an unimpeded avenue for malicious code.
These aren't features, they're security vulnerabilities. So said the advisory from F-Secure, which decried Apple's description of HREF Tracks as a feature.
Both issues with QuickTime could permit an attacker to inject a movie file with malicious JavaScript code. This could lead to activity from another worm like the Quickspace one that bothered MySpace users. |  |
Link to full article
Courtesy of securitypronews.com
|
|
|
| |
|
|
|
| |
|
|