Release date:
Updated on:
Affected Systems:
Apple QuickTime Player 7.x
Unaffected system:
Apple QuickTime Player 7.7.2
Description:
--------------------------------------------------------------------------------
Bugtraq id: 53582
Cve id: CVE-2012-0670
QuickTime is a multimedia architecture developed by Apple Computer. It can process many digital videos, media paragraphs, sound effects, text, animations, music formats, and interactive panoramic images.
Apple QuickTime versions earlier than 7.7.2 have a security vulnerability when processing specially crafted sean elements in video files. This vulnerability allows remote attackers to execute arbitrary code or cause DOS.
<* Source: Tom Gallagher
Paul Bates
Link: http://secunia.com/advisories/47447/
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Apple
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://support.apple.com/