Apple QuickTime zero-day flaw 'extremely critical'

By Tom Espiner, ZDNet UK
27 November 2007 09:29 AM
Tags: apple, critical, exploit, flaw, quicktime, streaming, secunia, rtsp

Security research firm Secunia has reported what it calls an "extremely critical" vulnerability in media-streaming program Apple QuickTime.

The flaw, which affects the latest versions of QuickTime, 7.x, has not been patched and could allow a hacker to gain remote control of an affected system. It lies in a boundary error, when the program processes Real Time Streaming Protocol (RTSP) replies, according to Secunia's advisory, which was published on Monday.

RTSP allows a client to remotely control video streams.

Working exploit code is in the wild, said Secunia, which linked from its advisory to details of the code on another security research site, milw0rm, which is where the vulnerability was initially recorded by Polish security researcher Krystian Kloskowski.

According to Kloskowski, exploit code can be executed on Windows Vista operating systems and systems running Microsoft XP Service Pack 2.

Secunia is advising that users do not browse untrusted Web sites, follow untrusted links, or open untrusted QuickTime Media Link files.

Elia Florio, a security researcher for Symantec, wrote on Symantec's Security Response Weblog that some QuickTime browser plug-ins appear to prevent any shell code being executed.

With Internet Explorer versions 6 and 7, and the Safari 3 beta, the attack appears to be prevented because standard buffer overflow prevention processes act before any damage can be done, Florio wrote. With Firefox, the QuickTime RTSP response is unmoderated. As a result, the exploit works against Firefox if QuickTime is the default multimedia player, according to Florio.

Talkback 0 comments

Latest Videos

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Brad Howarth The key Topik is always money
    One of the big problems of the internet is that is practically impossible to keep up-to-date on preferred topics. You can limit your sources, but this can mean missing a lot of valuable data.
  • Array Do we need the legislative blackmail?
    Virtually everyone in the telecommunications industry has their say in the Senate Standing Committee's public hearing into the pending legislation to split up Telstra, in this week's Twisted Wire podcast.
  • Array Give Tax a break for a Change
    Considering the circumstances the Australian Taxation Office's (ATO) Change Program has been operating in over the last few years, it really hasn't been going too badly.
  • More blogs »

Tags

Back to top

Featured