Buffer overflow in Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted ftab atom in a movie file.
CVSS Vector
AV:N/AC:M/Au:N/C:C/I:C/A:CApple Quicktime
APPApple7.0.07.0.17.0.27.0.37.0.47.1.07.1.17.1.27.1.37.1.47.1.57.1.67.2.07.2.17.3.0+ 30 more
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
RCEDoSMemory
CWE
Related vulnerabilities
CVE-2011-3428CRITICAL9.8PL ✓same product
Buffer overflow w Apple QuickTime dla Windows umożliwiający RCE
CVE-2017-2218HIGH7.8same product
Untrusted search path vulnerability in Installer of QuickTime for Windows allows an attacker to gain privilege...
CVE-2015-5779HIGH7.5same product
QuickTime 7 in Apple OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial o...
CVE-2014-4979HIGH9.3same product
Apple QuickTime allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt...
CVE-2014-1245HIGH9.3same product
Integer signedness error in Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or ...