*Source: InfoWorld (
http://www.infoworld.com/article/07/...-flaw_1.html)*
_________
Apple updated the Windows version of QuickTime today to quash a 13-month-old bug that critics say it overlooked when it patched the media player in March.
The update fixes a flaw in QuickTime for Windows XP and Vista first reported in September 2006 by U.K. researcher Petko Petkov. Last month, Petkov posted proof-of-concept code (
http://www.computerworld.com/action/...icleId=9036418) for the vulnerability after claiming Apple had not acknowledged his messages. Several samples posted to the Web leveraged both the QuickTime bug and one in the open-source Firefox browser to create a drive-by attack capable of invisibly hijacking a PC.
More...