- Web Crossing
- Mark/Space, Inc.
- VMware
- Bare Bones Software
- Fetch Softworks
- Microsoft
- Readers Like You!
Most Popular Articles
- How to Protect Yourself from the New Mac OS X Trojans (25 Jun 2008)
- iPhone 3G GPS Details, Power Adapter, and Industrial Design (10 Jun 2008)
- Firefox 3 Bounds Forward (22 Jun 2008)
- iPhone 3G Actually $160 More Expensive (11 Jun 2008)
Recent TidBITS Talk Discussions
- 802.11g-n mixed network question (2 messages)
- New Mac threats? (5 messages)
- The Hole in My Backup Plan (19 messages)
- Firefox feature sought (19 messages)
Shopping for a new digital camera? In "Take Control of Buying a Digital Camera," pro photographer Larry Chen helps you pick out the right camera and accessories for your needs and budget. This book is loaded with tips on using your camera, pointers to the best review sites, and more!
Published in TidBITS 911. Subscribe today to receive TidBITS in email every Monday.
- iMovie 7.1.1 and Front Row 2.1.2 Released
- Taste of Macworld Keynote Day Podcast
- DealBITS Drawing: Win a Copy of the MathMagic Equation Editor
- MacBook Air Introduced as World's Thinnest Notebook
- iTunes Movie Rentals and Apple TV, Take 2
- Time Capsule Bundles AirPort Base Station and Backup Disk
- Time Capsule and Its Associated Rage Factor
- iPhone and iPod touch Become Self-Aware
- More Women at Macworld Expo?
- Mac Industry Marching to a Different Beat
- Word 2008 and the Paste Plain Text Dance
- Hot Topics in TidBITS Talk/21-Jan-08
QuickTime 7.4 Improves Security, but Not Enough
Apple updated its media workhorse QuickTime to version 7.4 last week, fixing bugs and adding support for new iTunes features such as downloadable movie rentals. But the more important news is that this version squashes a handful of security holes that could allow remote attacks. However, a serious vulnerability discovered shortly before Macworld Expo demonstrates that Apple's engineers need to remain hard at work.
The QuickTime 7.4 update is available for Leopard (a 55 MB download), Tiger (a 51 MB download), Panther (a 50 MB download), and Windows (both XP and Vista, a 22 MB download).
The most recent exploit, not addressed in QuickTime 7.4, takes advantage of a hole in QuickTime's RTSP (Real Time Streaming Protocol) that could open a computer to a denial-of-service attack or possible remote code execution. (RTSP is not a new target; see "Protect Yourself from the QuickTime RTSP Vulnerability," 2007-09-07.) Because QuickTime is the underlying technology of iTunes, Macs and Windows computers running QuickTime are vulnerable. Anyone who uses iTunes or owns an iPod should update.
VMware Fusion. The most seamless way to run Windows on your Mac.Backed by nearly a decade of proven virtualization technology.
Try VMware Fusion today for free, or order online for only $79.
Visit: <http://www.tidbits.com/about/support/vmware-fusion.html>






