• Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.
  • The forums have been upgraded with support for dark mode. By default it will follow the setting on your system/browser. You may override it by scrolling to the end of the page and clicking the gears icon.

Zero-Day Exploit for Apple QuickTime Posted

malware

New Member
Joined
Nov 7, 2004
Messages
5,422 (0.72/day)
Location
Bulgaria
Processor Intel Core 2 Quad Q6600 G0 VID: 1.2125
Motherboard GIGABYTE GA-P35-DS3P rev.2.0
Cooling Thermalright Ultra-120 eXtreme + Noctua NF-S12 Fan
Memory 4x1 GB PQI DDR2 PC2-6400
Video Card(s) Colorful iGame Radeon HD 4890 1 GB GDDR5
Storage 2x 500 GB Seagate Barracuda 7200.11 32 MB RAID0
Display(s) BenQ G2400W 24-inch WideScreen LCD
Case Cooler Master COSMOS RC-1000 (sold), Cooler Master HAF-932 (delivered)
Audio Device(s) Creative X-Fi XtremeMusic + Logitech Z-5500 Digital THX
Power Supply Chieftec CFT-1000G-DF 1kW
Software Laptop: Lenovo 3000 N200 C2DT2310/3GB/120GB/GF7300/15.4"/Razer
An Italian security researcher has posted a proof-of-concept exploit for a zero-day vulnerability in the most current version of Apple's QuickTime media software (7.3.1) which affects both Windows and Mac OS X. According to Luigi Auriemma the bug is a buffer-overflow which happens during the handling of the HTTP error message and its visualization in the LCD-like screen which contains info about the status of the connection. Buffer overflows can often be exploited by attackers to compromise the affected system. In this scenario, that's exactly what this bug can do. It can allow the attacker to take control the affected system. The vulnerability Auriemma has identified has no fix at the moment, so keep it in mind if you use the latest QuickTime on your system. Find out more about the exploit here.

View at TechPowerUp Main Site
 
:banghead::banghead:I HAAAAAAAAATE quicktime. I'd rather use Realplayer than Quicktime.
 
Last edited:
Who needs Quicktime? :D

f4a6245ad9ed071630fdf8bd1f65f7b5.png
Picture is probably ok, but we're not allowed to link it. It's legality is questionable, so the admins here err on the side of caution. Trust me, I know first hand. lol.
 
Hmph, I've been reading it only effects Windows? Bad source? Who knows.
 
`Encrypted` the link above.
469px-Mip_Pssst_.svg.png

:roll::roll::roll:
 
Last edited by a moderator:
Not to be mean here, but who needs Quicktime or Quicktime alternative on their PC's ? Mac it's another story, but my Quicktime has flown off a long time ago. The recurring "Qttask" process was driving me nuts. It's business as usual without it so...
 
:shadedshu Some movies/trailers/clips are only available in .mov, hence the need for QuickTime Alternative. Trust me, I wouldn't want that junk on my PC either (it's a security nightmare), but sometimes I need to view certain videos which require that damned codec. :banghead:
 
i despise quicktime...
 
Back
Top