Quicktime 0-day actively used in the wild


Tuesday, Sep 07, 2010

Following our recent posting of an Apple Quicktime 0-day vulnerability, Websense Security Labs™ ThreatSeeker™ Network has discovered exploitation of this vulerability in the wild. We have protected customers from this vulnerability for at least a month now, and also provide real-time protection for customers using ACE.


Here is a screenshot of the attack page that shows the call to the vulnerable Quicktime function:

