A year ago this month, security researcher Petko D. Petkov (left) released details on vulnerabilities in Apple’s QuickTime media player to show how movie and MP3 files can be backdoored to hack into Firefox.
Apple fixed one of the bugs but the second issue, which allows malicious manipulation of QuickTime Media Link (.qtl) files, remains unpatched and presents a serious danger to Firefox users.
According to Petkov, a U.K.-based penetration testing specialist, the result of this vulnerability can lead to full compromise of the browser and maybe even the underlying operating system.
|