Apple announced a security update for QuickTime 7.1.6 on Mac OS X and Windows this afternoon. A list of vulnerabilities is included in Table 1 below. You can update QuickTime with the Software Update utility in Mac OS X or via the command line using the softwareupdate command line utility. More information can be found on Apple Product Security web site.
| CVE-2007-2388 | Visiting a malicious website may lead to arbitrary code execution. |
| CVE-2007-2389 | Visiting a malicious website may lead to the disclosure of sensitive information. |

Get Slaptijack updates delivered to your Inbox or RSS Reader for free!