Democratic Underground Latest Greatest Lobby Journals Search Options Help Login
Google

Apple QuickTime is Experiencing Security Problems

Printer-friendly format Printer-friendly format
Printer-friendly format Email this thread to a friend
Printer-friendly format Bookmark this thread
This topic is archived.
Home » Discuss » Archives » General Discussion (1/22-2007 thru 12/14/2010) Donate to DU
 
DainBramaged Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Sep-13-09 12:00 AM
Original message
Apple QuickTime is Experiencing Security Problems
Apple QuickTime - a multimedia framework developed by Apple Inc., capable to deal with a variety of formats of digital video, media clips, sound, text, animation, music, and interactive panoramic images - has been undergoing a number of different vulnerabilities many times. Security issues have been related to buffer overflow, cross-site scripting attacks and other problems. Luckily, in most cases they were fixed.

Apple QuickTime vulnerability has been put in the list of other distinct vulnerabilities reported this week. Several vulnerabilities have been identified in this particular software product. Undoubtedly, Apple QuickTime , as well as other Apple software products, i.e. Apple iTunes, Apple Safari, iWorkis, are very popular among online computer users. If you are interested in files related to Apple QuickTime, you may take a look at some of them: PLAYER.EXE, 00000055.ew, DISKETTE.INF and corevideo.qtx.

After providing all information regarding a few vulnerabilities existing in Apple QuickTime, it can be said that victimised users can stay calm. There is a great chance to solve these specific issues. The vendor recommends users who have experienced these vulnerabilities to update their installations to Apple QuickTime version 7.6.4. At last, don't forget to follow other vulnerability bulletins to protect your computer system from other security issues.

Resources:

http://www.apple.com/quicktime/download/


http://www.pc1news.com/news/0996/apple-quicktime-is-experiencing-security-problems.html
Printer Friendly | Permalink |  | Top
BlueJazz Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Sep-13-09 12:02 AM
Response to Original message
1. Get a Pc and ditch Quick Time (one of the worst, bulky programs ever made)
Printer Friendly | Permalink |  | Top
 
Tangerine LaBamba Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Sep-13-09 12:05 AM
Response to Reply #1
2. I'm PC, but I have Quicktime on this desktop -
don't I need it to be able to use iTunes?

Because I really hate QuickTime, always have.......................
Printer Friendly | Permalink |  | Top
 
DainBramaged Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Sep-13-09 12:06 AM
Response to Reply #2
3. I use it ONLY to watch trailers on Apple.com (movie nut here)
Printer Friendly | Permalink |  | Top
 
DainBramaged Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Sep-13-09 12:06 AM
Response to Reply #2
4. Dupe dupe a dupe dupe, doh doh
Edited on Sun Sep-13-09 12:06 AM by DainBramaged
Printer Friendly | Permalink |  | Top
 
Swamp Rat Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Sep-13-09 12:09 AM
Response to Reply #1
5. Great idea, as long as the PC does not use Windows as the OS
Printer Friendly | Permalink |  | Top
 
BlueJazz Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Sep-13-09 12:13 AM
Response to Reply #5
7. Of Course...although, I do have to admit that "7" is pretty decent.
Printer Friendly | Permalink |  | Top
 
DainBramaged Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Sep-13-09 12:18 AM
Response to Reply #7
9. Me loves WIN7, me happy with production version
Edited on Sun Sep-13-09 12:18 AM by DainBramaged
I'm testing the RTM version now. It will be a good piece of software for the public.

http://technet.microsoft.com/en-us/evalcenter/cc442495.aspx


Minimum System Requirements*:

1 GHz or faster 32-bit (x86) or 64-bit (x64) processor
1 GB of RAM (32-bit) / 2 GB RAM (64-bit)
16 GB available disk space (32-bit) / 20 GB (64-bit)
DirectX 9 graphics processor with WDDM 1.0 or higher driver
DVD-compatible drive
Internet access
Printer Friendly | Permalink |  | Top
 
PatGund Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Sep-13-09 12:10 AM
Response to Reply #1
6. Let me see, abandon one platform due to a problematic programme....
In favour of a virus and malware, security nightmare platform?

No thanks. I'll stick with OS X and Ubuntu.
Printer Friendly | Permalink |  | Top
 
BlueJazz Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Sep-13-09 12:17 AM
Response to Reply #6
8. Never caught anything (yet) ..use linux.
Printer Friendly | Permalink |  | Top
 
robpopulace Donating Member (94 posts) Send PM | Profile | Ignore Sun Sep-13-09 04:18 AM
Response to Original message
10. Wait...what?
Doesn't this article just say that these "Security Problems" exist only on Windows OS?
Unless you have a Bootcamp partition, I don't think you'll find any files named PLAYER.EXE, 00000055.ew, DISKETTE.INF or corevideo.qtx functioning on a Mac. So actual Mac users can remain calm ... right?

Holy Crap!!
The article goes on to list the problems in detail:

An error in the parsing of H.264 movie files could be exploited by evil users to lead to memory corruption.
An error in the parsing of MPEG-4 video files could be exploited by vicious users to trigger a buffer overflow.
An integer overflow error occurs while dealing with the "SectorShift" and "cSectFat" fields of a FlashPix file header. This could be exploited by remote attackers to create a heap-based buffer overflow through a malicious FlashPix (".fpx") file.
A boundary error occurs while managing samples from a H.264 encoded MOV file. This could be exploited by spiteful attackers to evoke a heap-based buffer overflow through a manipulated MOV file.

OMG I'm still skeerd!!!

Interesting though that all these things "could" happen, but have they?

The final paragraph states, "After providing all information regarding a few vulnerabilities existing in Apple QuickTime, it can be said that victimised(sic) users can stay calm."
Has anyone been victimized?

My heart can't take this and I don't have medical insurance!

Printer Friendly | Permalink |  | Top
 
robpopulace Donating Member (94 posts) Send PM | Profile | Ignore Sun Sep-13-09 04:26 AM
Response to Reply #10
11. fuck
forgot this
:sarcasm:
Printer Friendly | Permalink |  | Top
 
Touchdown Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Sep-13-09 04:59 AM
Response to Original message
12. Already have 7.6.4. no problem with my porn.
:evilgrin:
Printer Friendly | Permalink |  | Top
 
DU AdBot (1000+ posts) Click to send private message to this author Click to view 
this author's profile Click to add 
this author to your buddy list Click to add 
this author to your Ignore list Sat May 04th 2024, 10:10 AM
Response to Original message
Advertisements [?]
 Top

Home » Discuss » Archives » General Discussion (1/22-2007 thru 12/14/2010) Donate to DU

Powered by DCForum+ Version 1.1 Copyright 1997-2002 DCScripts.com
Software has been extensively modified by the DU administrators


Important Notices: By participating on this discussion board, visitors agree to abide by the rules outlined on our Rules page. Messages posted on the Democratic Underground Discussion Forums are the opinions of the individuals who post them, and do not necessarily represent the opinions of Democratic Underground, LLC.

Home  |  Discussion Forums  |  Journals |  Store  |  Donate

About DU  |  Contact Us  |  Privacy Policy

Got a message for Democratic Underground? Click here to send us a message.

© 2001 - 2011 Democratic Underground, LLC