15 April 2016

Uninstall QuickTime for Windows now

Trend Micro is advising everyone to follow Apple’s guidance and uninstall QuickTime for Windows as soon as possible.

Chris Budd, Global Threat Communications, Trend Micro, explains in a blog post that Apple is deprecating QuickTime for Microsoft Windows. "They will no longer be issuing security updates for the product on the Windows Platform and recommend users uninstall it. Note that this does not apply to QuickTime on Mac OSX," he said in the post.

Trend Micro had also released two advisories -  ZDI-16-241 and ZDI-16-242,  detailing two critical vulnerabilities around heap corruption remote code execution affecting QuickTime for Windows.

"These advisories are being released in accordance with the Zero Day Initiative’s Disclosure Policy for when a vendor does not issue a security patch for a disclosed vulnerability. And because Apple is no longer providing security updates for QuickTime on Windows, these vulnerabilities are never going to be patched," Budd pointed out.

Using QuickTime for Windows, Budd said, is now subject to increasing risk like Microsoft Windows XP and Oracle Java 6 as software that is no longer being updated to fix vulnerabilities.


Learn how to uninstall Apple QuickTime for Windows from the Apple website

Trend Micro TippingPoint customers have been protected against these two vulnerabilities since November 24, 2015 with filters 21918 (ZDI-CAN-3401) and 21919 (ZDI-CAN-3402).

posted from Bloggeroid