Show filters
116 Total Results
Displaying 111-116 of 116
Sort by:
Attacker Value
Unknown

CVE-2007-0718

Disclosure Date: March 05, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a QTIF file with a Video Sample Description containing a Color table ID of 0, which triggers memory corruption when QuickTime assumes that a color table exists.
0
Attacker Value
Unknown

CVE-2007-0716

Disclosure Date: March 05, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted QTIF file.
0
Attacker Value
Unknown

CVE-2007-0588

Disclosure Date: January 30, 2007 (last updated October 04, 2023)
The InternalUnpackBits function in Apple QuickDraw, as used by Quicktime 7.1.3 and other applications on Mac OS X 10.4.8 and earlier, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PICT file that triggers memory corruption in the _GetSrcBits32ARGB function. NOTE: this issue might overlap CVE-2007-0462.
0
Attacker Value
Unknown

CVE-2007-0462

Disclosure Date: January 26, 2007 (last updated October 04, 2023)
The _GetSrcBits32ARGB function in Apple QuickDraw, as used by Quicktime 7.1.3 and other applications on Mac OS X 10.4.8 and earlier, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PICT image with a malformed Alpha RGB (ARGB) record, which triggers memory corruption.
0
Attacker Value
Unknown

CVE-2007-0015

Disclosure Date: January 01, 2007 (last updated October 04, 2023)
Buffer overflow in Apple QuickTime 7.1.3 allows remote attackers to execute arbitrary code via a long rtsp:// URI.
0
Attacker Value
Unknown

CVE-2006-4965

Disclosure Date: September 25, 2006 (last updated October 04, 2023)
Apple QuickTime 7.1.3 Player and Plug-In allows remote attackers to execute arbitrary JavaScript code and possibly conduct other attacks via a QuickTime Media Link (QTL) file with an embed XML element and a qtnext parameter that identifies resources outside of the original domain. NOTE: as of 20070912, this issue has been demonstrated by using instances of Components.interfaces.nsILocalFile and Components.interfaces.nsIProcess to execute arbitrary local files within Firefox and possibly Internet Explorer.
0