Dangerous QuickTime Security Flaw
Linden Lab has sent a warning about a dangerous exploit in QuickTime which may allow an attacker to crash or exploit the viewer. This exploit affects QuickTime usage on every platform.
It is believed that the exploit works when someone comes nearby and is within view of a bugged object, the viewer activates QuickTime so it can play the stream. In doing so, QuickTime directs the viewer to a web site. By exploiting the flaw in QuickTime, hackers can direct the viewer to a malicious web site that then allows them to take over the avatar or they could create a program embedded in an avatar's and have it activated in a way that a passing avatar would have no clue whatsoever that it had just been pickpocketed.
Linden Lab's advice is that you disable streaming video playback in the viewer except when you are attending a known and trusted venue.
- Open your Preferences dialog
- Uncheck "Play Streaming Video When Available" checkbox on the "Audio & Video" tab
No comments:
Post a Comment