• On GameSpot: How much $$ did Call of Duty's DLC make?
advertisement
June 10, 2008 10:00 AM PDT

QuickTime 7.5 released

by CNET staff

[Published Tuesday, June 10]

Apple has released QuickTime 7.5 in the following editions:

Apple says the update fixes application compatibility and addresses security issues.

Opening a maliciously crafted AAC-encoded media content may lead to an unexpected application termination or arbitrary code execution A memory corruption issue exists in QuickTime's handling of AAC-encoded media content. Opening a maliciously crafted media file may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue by performing additional validation of media files.

Opening a maliciously crafted PICT image file may lead to an unexpected application termination or arbitrary code execution A heap buffer overflow exists in QuickTime's handling of PICT images. Opening a maliciously crafted PICT image file may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue through improved bounds checking.

Viewing maliciously crafted Indeo video media content may lead to an unexpected application termination or arbitrary code execution An issue in QuickTime's handling of Indeo video codec content may result in a stack buffer overflow. Viewing a maliciously crafted movie file with Indeo video codec content may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue by not rendering Indeo video codec content.

Playing maliciously crafted QuickTime content in QuickTime Player may lead to arbitrary code execution A URL handling issue exists in QuickTime's handling of file: URLs. This may allow arbitrary applications and files to be launched when a user plays maliciously crafted QuickTime content in QuickTime Player. This update addresses the issue by revealing files in Finder or Windows Explorer rather than launching them.

Problems after updating? Please let us know.

Resources

  • QuickTime 7.5 for Leopard [56MB]
  • QuickTime 7.5 for Tiger [52.8MB]
  • QuickTime 7.5 for Panther [51.39MB]
  • let us know
  • More from Late-Breakers
  • Recent posts from MacFixIt
    iTunes 10 user interface sees some minor changes
    Apple seeds iOS 4.1 Gold Master to developers
    Possible fix for Harman Kardon iSub problems with PowerPC Macs
    Precautions to take before installing iTunes 10
    A reminder on how to reset your Mac's system password
    Mail messages appearing blank
    Adobe Lightroom update brings direct Facebook publishing; Camera Raw 6.2 released
    Weekly troubleshooting utilities update
    Add a Comment (Log in or register) (4 Comments)
    • prev
    • next
    by Gordon Alley June 10, 2008 10:54 AM PDT
    It's been released for Windows XP as well. I received the notice and updated my office PC today.
    Reply to this comment
    by Fingal June 10, 2008 11:52 AM PDT
    The part about the Indeo video is a bit strange. As far as I can tell, it's still only possible to play Indeo video under OS 9 as explained in <A HREF="http://docs.info.apple.com/article.html?artnum=60366">this page </A> on Apple's site. If there's now a way to play Indeo codecs on OS X, I would be interested to hear about it.
    Reply to this comment
    by Gordon Alley June 11, 2008 11:13 AM PDT
    It appears that the Software Update requires QT 7.5 to be installed before it will give the option of installing the new iMovie and iDVD updates.
    Reply to this comment
    by WiredGuy June 11, 2008 11:28 AM PDT
    It appears that 7.5 also added support for some new AVCHD video cameras (including the hot Panasonic HDC-SD9 and HDC-HS9). I can't find any documentation of the change, but it's confirmed by a number of posters on the Apple forums. My HDC-HS9 definitely works now, and it did not before.
    Reply to this comment
    (4 Comments)
    • prev
    • next