The Register® — Biting the hand that feeds IT

Apple bitten by iTunes security bugs

Musical chairs

Security researchers have discovered four critical vulnerabilities involving Apple's QuickTime media player software and the download application for Apple's iTunes music store. The flaws create a means for hackers to take control of affected systems, according to eEye Digital Security, the firm that discovered the bugs.

All four security issues are exploitable via iTunes. Because of the popularity of Apple's iPod among office workers many businesses, as well as consumers, are potentially exposed to attack. The cross platform flaw affects Windows 2000, Windows XP and Apple Mac OS X systems running vulnerable versions of iTunes. Fortunately Apple has released a fix. Users are urged to update to QuickTime 7.0.4. More info on the flaws can be found in a series of advisories by eEye Digital Security (here, here, here, here). ®

Free research: Application platforms, the state of play

Don’t Miss

Win a Samsung C6625!

Reg Lucky Draw Windows Mobile handsets up for grabs

Palm_Pre_001_SMIs your cameraphone an oxymoron?

Pic Review iPhone 3G v iPhone 3GS v Palm Pre

Reg black vulture logoReg Mobile and Wireless newsletter is go! go! go!

Site news Email-tasm

Sign up, sign up for The Register IT security newsletter

Narrowcasting for the email classes