Sep 19 2007
Firefox v2.0.0.7 fixes the QuickTime Flaw
Posted by: Sierra Monica B. in Software

As some of you probably have seen, Firefox is auto-updating, this following the critical rating reports for the fairly dangerous flow which was occurring when combining the browser with Quicktime.

The latest version of QuickTime contains a flow in the Media Link function enabling the parsing of up to 60 different file types with a compatible extension, and by failing to sanitize the XML content, the malicious code is passed into media files and executed in JavaScript form.
Until the issue is removed, Firefox users were advised to disable the QuickTime plug-in.
Those that haven’t updated it yet, you can get the latest version from here, compatible with Windows, Mac, and Linux.





Comments