All the latest UK technology news, reviews and analysis

Apple fixes bugs in iTunes and QuickTime

by Shaun Nichols

More from this author

03 Jun 2009

Be the first to comment

  • Tweet this
Apple
The Apple patches address security issues in iTunes and QuickTime

Apple has issued updates to address security issues in iTunes and the QuickTime media player software.

The iTunes 8.2 and QuickTime 7.6.2 updates address a number of vulnerabilities for the Windows XP and Vista versions of both applications, along with MacOS X 10.4 and 10.5 software versions.

The QuickTime update fixes 10 flaws, each of which could allow an attacker to remotely execute code on a target system. Eight of the flaws affect both the MacOS X and Windows versions, while the remaining two apply only to the Windows Vista and XP releases.

Among the patched vulnerabilities are remote code execution flaws in the way QuickTime handles PICT and JP2 images, as well as several flaws in the handling of video files.

The iTunes update fixes just one flaw affecting the Windows and OS X versions of the media player. If exploited, the flaw could allow an attacker to remotely execute code by using a specially crafted URL to launch and then crash iTunes.

Users can obtain both updates through the Apple Software Update tool or online from the company's download site.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

97%

1%

1%

0%

1%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

testjobpleaseignore (autoupload)

1329899014.71117-2574 testjobpleaseignore (autoupload...

Embedded C, Linux, RTOS, Agile, - Software Engineer - Staines

Embedded C, Linux , RTOS, Agile, MISRA – Embedded...

Software Engineer / Web Developer – Java, JavaScript, SQL

Software Engineer / Web Developer - Java, JavaScript...

C#, Oracle, Winforms, Junior Software Engineer, Central London 25-35k

C# , Oracle , Winforms, Junior Software Engineer – Central...

To send to more than one email address, simply separate each address with a comma.