No. 1 Story

HP job cuts loom for Australian employees

A number of Australian employees of Hewlett-Packard are facing the loss of their jobs as the global computer giant looks to slash its worldwide workforce by up to 30,000.

read more

Related Articles

Adoption of cloud computing has reached a tipping point  - but don’t expect legacy...
In yet another blow to the Facebook IPO this week, following the withdrawal of...
Recruitment technology and social media have played a significant role in growing business in...
Fancy a 4G Windows Phone? Your wait may be over next Tuesday when Telstra...
D-Link's new All-in-one Mobile Companion lives up to its name for those who travel...

Apple patches for QuickTime for Windows

Your IT - Home IT

Apple has released a security update for QuickTime 7.2 for Windows, protecting against a vulnerability that allowed maliciously crafted QTL files.

QTL (QuickTime Media Link) files specify the media files that are to be played, along with information about how it should be played.

The flaw is that the ability to include JavaScript in a QTL file could be exploited to cause the execution of arbitrary code by passing command line arguments to another application.

The issue was identified by Petko Petkov in September 2006, but remained unaddressed until he published a proof of concept exploit on September 12, 2007

Firefox 2.0.0.7 was released to guard against such exploits being carried out via that browser, but it seems that Apple's patch addresses the issue at a lower level, preventing other applications from being used as vectors.

Security Update for QuickTime 7.2 for Windows can be obtained from Apple Downlaods http://www.apple.com/support/downloads/ or via the Apple Software Update utility.

The Mac OS X version of QuickTime is not affected by this issue.