The Month of Apple Bugs Web site started the year with its first flaw in an Apple product: QuickTime. The posting suggests that a flaw in the QuickTime rstp URL handler could be exploited through a handler stack-based buffer overflow that results in the ability to remotely execute code on your computer.
QuickTime Bug First Entry in 'Month of Apple Bugs' Site
QuickTime Bug First Entry in 'Month of Apple Bugs' Site