QuickTime 7.6.7 is now available and addresses the following:
QuickTime
CVE-ID: CVE-2010-1799
Available for: Windows 7, Vista, XP SP2 or later
Impact: Viewing a maliciously crafted movie file may lead to an
unexpected application termination or arbitrary code execution
Description: A stack buffer overflow exists in QuickTime's error
logging. Viewing a maliciously crafted movie file may lead to an
unexpected application termination or arbitrary code execution. This
issue is addressed by disabling debug logging. This issue does not
affect Mac OS X systems.
For Windows 7 / Vista / XP SP2 or later
The download file is named: "QuickTimeInstaller.exe"
Its SHA-1 digest is: 38a132fe1969e617f33c00ebae3ce34a7695113f
QuickTime 7.6.7 is not presented to Mac OS X systems.
iQEcBAEBAgAGBQJMZFzJAAoJEGnF2JsdZQeeF60H/2/72LHKWPc4x6i8Zf5HDarY
JuD7E+DGRnzPgm62zWOpdN4e6I7ldVjQdap3yW84GmVYClzhkHBZeUqwB/PHYRyQ
FXXTr15GBfOZgYFRc3YSXQhax0BPtPuJeh4oWLcpnyGAs6FvfF1buzG8JGRCZ0wZ
j5ZiVutpKApu/K/OCVdB+IbRJXOYk9uUOt+fT7kQLQK1Tv5g2UBaIuRkuBciBPXT
lwHOvsfpVfh7lVqcaJpjObyb5HQoJpT0HvLSroIB1vVfRcD62x7LnYAlMJUju4P3
1QuwzhIeXahq1MpoAXQ6k6j15KZ0edpMcNxtOOCPvHZnAD8FgZHVjWtAVY5qG+k=
=A2mc
-----END PGP SIGNATURE-----
_______________________________________________
Do not post admin requests to the list. They will be ignored.
Security-announce mailing list (email@hidden)
Help/Unsubscribe/Update your Subscription:
This email sent to email@hidden