The Mac Observer

Skip navigational links

You're viewing an article in TMO's historic archive vault. Here, we've preserved the comments and how the site looked along with the article. Use this link to view the article on our current site:
Symantec: QuickTime Flaw Poses Security Threat

Symantec: QuickTime Flaw Poses Security Threat

by , 8:50 AM EST, November 26th, 2007

The security and virus protection software company Symantec is warning that Apple's QuickTime Player application may be open to malicious attacks. According to the company, both QuickTime 7.2 and QuickTime 7.3 are vulnerable to attacks that could lead to denial of service conditions or the execution of unauthorized code on the user's PC.

Symantec claims the threat stems from the way QuickTime Player handles RTSP Response headers. A specially-crafted header could create a buffer overflow because QuickTime apparently does not properly bounds-check incoming data.

The company did not state if this is a Windows-only problem, or if Mac OS X users are at risk, too. Since an attacker could use this flaw to remotely install applications without user consent, however, this is most likely a bigger threat to Windows users because Microsoft's operating systems are routinely the targets of malware and spyware attacks.

Recent TMO Headlines - Updated October 18th

Wed, 10:00 AM
Flexibits Intros Cardhop Interactive Contacts Manager for the Mac
Wed, 9:58 AM
Twelve South's Mac Candle No. 2 Smells Less Like a New Mac
Wed, 9:05 AM
How to Choose the Best Mesh Wireless System For Your Home
Wed, 9:00 AM
Adobe Brings AI to Creative Cloud Apps with Sensei
Wed, 9:00 AM
The Complete iOS 11 Developer Course and iOS Mastery Bundle: $29
Wed, 8:00 AM
iTunes App Syncing is Back (Kinda)
Wed, 12:01 AM
Sonos One: Alexa-Controlled Wireless Home Speaker
Tue, 10:37 PM
Updated List of WPA-2 KRACK Patches in Consumer Routers
Tue, 5:22 PM
5 Great iPhone Task Management Apps
Tue, 4:44 PM
Here's How to Convert Your Blu-ray or DVD Movies to iTunes the Right Way
Tue, 4:43 PM
Sylvania Announces Apple HomeKit Smartbulbs and Flexstrip
Tue, 3:15 PM
You Should Know: An Apple ID Phishing Scam is Going Around
  • __________
  • Buy Stuff, Support TMO!
  • Podcast: Mac Geek Gab
  • Podcast: Apple Weekly Report
  • TMO on Twitter!