Skip to content

customize
National Cyber Alert System
Cyber Security Alert SA06-011Aarchive

Apple QuickTime Vulnerabilities

Original release date: January 11, 2006
Last revised: May 12, 2006
Source: US-CERT

Systems Affected

Apple QuickTime for
  • Apple Mac OS X
  • Microsoft Windows XP
  • Microsoft Windows 2000

Overview

Apple has released Apple QuickTime 7.0.4 to correct several vulnerabilities. These vulnerabilities could allow an attacker to gain access to your computer.


Solution

Install an Update

OS X users should use the Mac OS X Software Update feature to download and install Apple QuickTime 7.0.4. Consider scheduling Software Update to check for updates automatically (this option is enabled by default).

Microsoft Windows users should upgrade to Apple QuickTime 7.0.4.


Description

QuickTime prior to version 7.0.4 has multiple image and media file handling vulnerabilities that could allow an attacker to run malicious programs on your computer. Upgrading to Apple QuickTime version 7.0.4 will correct these vulnerabilities.

For more technical information, see US-CERT Technical Alert TA06-011A and the Apple QuickTime Security Update.


References



Feedback can be directed to US-CERT.


Produced 2006 by US-CERT, a government organization. Terms of use

Revision History

January 11, 2006: Initial release
January 12, 2006: Added link to standalone QuickTime Player
May 12, 2006: Corrected production statement

Last updated February 11, 2008
print this document