BetaONE will rise again!

BetaONE will rise again! (http:\\b1.hcanet.com\forum/index.php)
-   NeoWin News (http:\\b1.hcanet.com\forum/forumdisplay.php?f=6)
-   -   QuickTime Bug Gives Hackers New Drive-by Attack (http:\\b1.hcanet.com\forum/showthread.php?t=28238)

NewsBot 14th Sep 07 10:35 AM

QuickTime Bug Gives Hackers New Drive-by Attack
 
A year-old bug in QuickTime that, when paired with Firefox allows, hackers to hijack PCs and Macs now has Mozilla Corp. scrambling for a fix, the company's chief security officer said Wednesday.

According to Petko Petkov, a U.K.-based Web application penetration tester, the current version of QuickTime contains a flaw in its Media Link (.qtl file formats) function. Any file with a QuickTime-supported extension -- there are more than 60 -- will be parsed by Apple Inc.'s media player. However, because it fails to sanitize the XML content, an attack can sneak links to malicious JavaScript into the file, and get QuickTime to run it.

View: The full story
News source: PCWorld

Read full story...



More...


All times are GMT +1. The time now is 03:45 PM.

Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.