Alert Number: 061008-02
Alert Date: 06/10/08
Alert Title: Quicktime Update fixes security vulnerabilities
Update-to: None.
OS/Platform/Application:
Apple Quicktime all versions older than 7.5 (on Windows and Mac systems)
Category: ALERT
Severity: MEDIUM
Attention: Quicktime Users, System Administrators, Desktop Support Personnel.
Summary: On June 10 2008 Apple announcd the release of version 7.5 of its popular Quicktime media player. Quicktime 7.5 includes fixes for 5 different security vulnerabilities that can affect Windows and/or Mac systems. The majority of these vulnerabilities could be exploited by the viewing of a maliciously-crafted graphic/picture or movie file. If successful, these exploits could result in a range of unfavorable outcomes including application crash and complete system takeover.
Recommended Actions: Quicktime users and persons who support or administrate computer systems running Quicktime are encouraged to read the security advisory information (safe links provided below) and update their software to the latest version at their earliest convenience.
Readers are encouraged to share this alert with family, friends, and associates.
ITS Actions: N/A
Resources:
Quicktime 7.5 Security Content Page:
http://support.apple.com/kb/HT1991
SANS Advisory:
http://isc.sans.org/diary.html?storyid=4547
Quicktime Download Page:
http://www.apple.com/quicktime/download/