• Contact Editorial Team
  • Advertise on YNOT
  • Submit PR
Wednesday, May 20, 2026
  • Login
  • Register
YNOT
  • Home
  • Industry News
    • Porn Star & Adult Talent News
    • Adult Business News
    • Adult Novelty News
    • Adult Industry Legal News
    • Tech News for Adult Webmasters
    • Video Game News for Adults
    • EU News
  • PR Wire
  • Podcasts
  • Industry Guides
  • Newsletters
No Result
View All Result
  • Home
  • Industry News
    • Porn Star & Adult Talent News
    • Adult Business News
    • Adult Novelty News
    • Adult Industry Legal News
    • Tech News for Adult Webmasters
    • Video Game News for Adults
    • EU News
  • PR Wire
  • Podcasts
  • Industry Guides
  • Newsletters
No Result
View All Result
YNOT
No Result
View All Result
Home Adult Industry News from YNOT Adult Business News

“Month of Apple Bugs” Begins With Report of Critical, Easily-Exploited QuickTime Flaw

admin by admin
January 2, 2007
in Adult Business News
491
SHARES
Share on FacebookShare on Twitter

CYBERSPACE — Security researcher Kevin Finisterre and his anonymous partner “LMH” kicked off their MOAB (“Month of Apple Bugs”) project yesterday by detailing a stack overflow error in Apple’s commonly-used QuickTime media player.“A vulnerability exists in the handling of the rtsp:// URL handler,” LMH stated in a post to his “Apple Fun” blog. “By supplying a specially crafted string… an attacker could overflow a stack-based buffer, using either HTML, Javascript or a QTL file as attack vector, leading to an exploitable remote arbitrary code execution condition.”

“Exploitation of this issue is trivial,” LMH added in his summary of the flaw.

The French Security Incident Response Team (FrSIRT) has rated the flaw “Critical,” and suggests that QuickTime users disable Real Time Streaming Protocol (RTSP) support until an official patch for the bug has been supplied.

Dutch security firm Secunia concurred with FrSIRT’s assessment, terming the flaw “highly critical.” Secunia recommended that QuickTime users not open “untrusted QTL files” pending the release of an official patch.

Apple has not yet commented on the bug.

This is not LMH’s first “month of bugs” project; in November, the anonymous researcher/hacker conducted the “Month of Kernel Bugs.” Both appear to have been inspired by the “Month of Browser Bugs” conducted by MetaSploit.com last July.

The MOAB project was recently derided in a Mac Observer editorial as a “Month of Continuous Foolishness.” In the piece, Mac Observer’s John Martellaro takes umbrage with LMH’s bug reporting approach, which does not include prior notification to Apple’s security teams.

Martellaro opines that the MOAB project is “some kind of desire for notoriety,” and notes that “there are appropriate channels to handle these discoveries that are professional and protect everyone.”

On a FAQ published on the MOAB website, LMH states that his project does “rarely” notify vendors first, adding that “sometimes we may decide to pass an issue through the appropriate people.”

“The problem with so-called ‘responsible disclosure’ is that for some people, it means keeping others on hold for insane amounts of time, even when the fix should be trivial,” the FAQ answer continues. “And the reward (automated responses and euphemism-heavy advisories) doesn’t pay off in the end.”

In his editorial criticizing the MOAB project, Martellaro asserts “the supposition that there are some people who take the security of Mac OS X more seriously than the BSD professionals and Apple engineers is stupendously arrogant and self-serving.”

For more information, check out the following:

Secunia’s security advisory: http://secunia.com/advisories/23540/
LMH’s “Apple Fun” blog: http://applefun.blogspot.com/
The MOAB website: http://projects.info-pull.com/moab/

Share196Tweet123
admin

admin

YNOT Admin wields his absolute power without mercy. When he's not busy banning spam comments to hell he enjoys petting bunnies and eating peanut butter. He recommends everyone try the YNOT Mail (ynotmail.com) email marketing platform and avoid giving their money to mainstream services that hate adult companies.

Related Posts

New on Adult Site Broker Talk: Eduard Moraru of SinDream
Adult Business News

New on Adult Site Broker Talk: Eduard Moraru of SinDream

May 19, 2026
Elegant Angel Debuts James Avalon Feature “Summer & Joy”
Adult Business News

Elegant Angel Debuts James Avalon Feature “Summer & Joy”

May 19, 2026
LALEXPO Thanks Attendees for “Making History with Us”
Adult Business News

LALEXPO Thanks Attendees for “Making History with Us”

May 18, 2026
Lovense to Hold 9th Annual Global Orgy on X, May 23
Adult Novelty News

Lovense to Hold 9th Annual Global Orgy on X, May 23

May 18, 2026
Load More

SPONSOR

INDUSTRY EVENTS

Currently Playing

YNOT Summit Model Track: Nerds Dig Sexy Gamers

YNOT Summit Model Track: Nerds Dig Sexy Gamers

01:05:46

YNOT Summit Webmaster Track: Understanding Webcam Business Models

00:51:11

YNOT Summit Model Track: Cam Law 101

01:26:24

SPONSOR

POPULAR NEWS

New on Adult Site Broker Talk: Eduard Moraru of SinDream

New on Adult Site Broker Talk: Eduard Moraru of SinDream

May 19, 2026
Elegant Angel Debuts James Avalon Feature “Summer & Joy”

Elegant Angel Debuts James Avalon Feature “Summer & Joy”

May 19, 2026
Full Circle Brands Expands Enhancements Line

Full Circle Brands Expands Enhancements Line

May 19, 2026

Sponsor

YNOT YNOT

QUICK LINKS:

  • About YNOT
  • Terms of Use
  • Privacy Policy
  • Editorial Team
  • Advertise on YNOT
  • Sitemap

FRIENDS OF YNOT:

  • Best Adult Cams
  • Live Porn
  • Adult Reviews
  • Adult Email Marketing
  • Discounted Porn
  • vr porn sites
  • European Adult Biz Magazine

FRIENDS OF YNOT:

  • Pornlinks
  • XXX Job Interviews
  • Adult Site Broker
  • Femdom
  • Paid Porn Sites
  • Live Sex
  • VR Porn
  • AI Girlfriend
  • live porn Vibra Game

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Adult Business News
  • Adult Industry Legal News
  • Adult Novelty News
  • Porn Star & Adult Talent News
  • Tech News for Adult Webmasters
  • Video Game News for Adults
  • Interviews
  • Opinions
  • YNOT Industry Wire
  • Newsletters

Copyright © 2026 YNOT Group LLC.

We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.