Apple announced a security update for QuickTime 7.1.6 on Mac OS X and Windows this afternoon. A list of vulnerabilities is included in Table 1 below. You can update QuickTime with the Software Update utility in Mac OS X or via the command line using the softwareupdate command line utility. More information can be found on Apple Product Security web site.

Table 1. Apple Security Update APPLE-SA-2007-05-29
CVE-2007-2388 Visiting a malicious website may lead to arbitrary code execution.
CVE-2007-2389 Visiting a malicious website may lead to the disclosure of sensitive information.

Related Posts