Public Exploit Code Targeting Firefox and QuickTime
added September 12, 2007 at 04:26 pm | updated September 14, 2007 at 09:02 am
US-CERT is aware of working publicly available exploit code that targets users with Firefox and QuickTime installed. This exploit allows a remote, unauthenticated attacker to execute arbitrary commands on an affected system.
More information regarding this vulnerability can be found in Vulnerability Note
VU#751808
.
Until updates are available, US-CERT encourages administrators and users to view only trusted QuickTime movies.