Apple QuickTime Plug-In Arbitrary Script Execution Weakness

The following proof-of-concept QuickTime Media Link files are available; they use the '.mp3' file extension.

A sample exploit written in the Ruby programming language has also been provided.


 

Privacy Statement
Copyright 2010, SecurityFocus