Playlist flaw lets hackers in
Playlist flaw lets hackers in
R E L A T E D   C O N T E N T
ADVERTISEMENT

iTunes users at risk from hackers

Subscribers urged to upgrade software immediately

Iain Thomson, vnunet.com 14 Jan 2005
ADVERTISEMENT

Users of Apple's iTunes software need to upgrade immediately to avoid their computers being compromised, security experts have warned.

Hackers can build malicious playlist files which they can use to crash the application and seize control of the computer by inserting Trojan code, according to security firm iDefence. The rogue playlists can be identified by their unusually long URLs.

"The problem specifically exists when parsing playlist files that contain long URL file entries," warned iDefence in an advisory this morning.

"Malicious playlist files can come with either the .m3u or .pls extension. Although their formats are different, the vulnerability in each is the same."

The company advises users to upgrade to iTunes 4.7.1, which fixes the problem, and to avoid downloading playlists from unknown sources.

See also:

Users advised to upgrade immediatelyProof-of-concept code contains no virus or Trojan payload  17 Jan 2005
Disgruntled owner seeking damagesCustomer gets the pip after being 'forced' to buy an iPod  06 Jan 2005
Office of Fair Trading says 79p is too muchJobs for the lawyers  03 Dec 2004

All Bugs & Fixes

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| JAM Recruitment
Software Test Engineer 6 Weeks Contract £ 35 per hour Wiltshire We have an urgent need for a Software Test Engineer. Main Duties: ·Sound understanding of full software lifecycle ·Solid experience in requirements analysis ·Requirements ... more >
| JAM Recruitment
Software Test Engineer 3 Months Contract £35 per hour Wiltshire We have an urgent need for a Software Test Engineer. Main Duties: ·Sound understanding of full software lifecycle ·Solid experience in requirements analysis ·Requirements based ... more >
| Aston Carter
Major Investment Bank requires a Business Analyst to work within reference data IT. The reference data IT function is responsible for the three internal systems. One of the systems is a strategic repository for Client ... more >
| JAM Recruitment
Job Ref: CY - 27021979 Package: £25 – 42,000 +Bens Location: YORKSHIRE Job type: Occupational Health Position type: Permanent Hours: Full time Contact name: Mr Colin Youle Contact Company: JAM HUMAN RESOURCES Are you a ... more >
More job opportunities