Show filters
85 Total Results
Displaying 71-80 of 85
Sort by:
Attacker Value
Unknown

CVE-2009-0005

Disclosure Date: January 21, 2009 (last updated October 04, 2023)
Unspecified vulnerability in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted H.263 encoded movie file that triggers memory corruption.
0
Attacker Value
Unknown

CVE-2008-3626

Disclosure Date: September 11, 2008 (last updated October 04, 2023)
The CallComponentFunctionWithStorage function in Apple QuickTime before 7.5.5 does not properly handle a large entry in the sample_size_table in STSZ atoms, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file.
0
Attacker Value
Unknown

CVE-2007-6166

Disclosure Date: November 29, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac OS X, allows remote Real Time Streaming Protocol (RTSP) servers to execute arbitrary code via an RTSP response with a long Content-Type header.
0
Attacker Value
Unknown

CVE-2007-0712

Disclosure Date: March 05, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted MIDI file.
0
Attacker Value
Unknown

CVE-2007-0714

Disclosure Date: March 05, 2007 (last updated October 04, 2023)
Integer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted QuickTime movie with a User Data Atom (UDTA) with an Atom size field with a large value.
0
Attacker Value
Unknown

CVE-2007-0711

Disclosure Date: March 05, 2007 (last updated October 04, 2023)
Integer overflow in Apple QuickTime before 7.1.5, when installed on Windows operating systems, allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted 3GP video file.
0
Attacker Value
Unknown

CVE-2006-1453

Disclosure Date: May 12, 2006 (last updated October 04, 2023)
Stack-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted QuickDraw PICT image format file containing malformed font information.
0
Attacker Value
Unknown

CVE-2003-1413

Disclosure Date: December 31, 2003 (last updated February 22, 2025)
parse_xml.cgi in Apple Darwin Streaming Server 4.1.1 allows remote attackers to determine the existence of arbitrary files by using ".." sequences in the filename parameter and comparing the resulting error messages.
0
Attacker Value
Unknown

CVE-2003-1414

Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Directory traversal vulnerability in parse_xml.cg Apple Darwin Streaming Server 4.1.2 and Apple Quicktime Streaming Server 4.1.1 allows remote attackers to read arbitrary files via a ... (triple dot) in the filename parameter.
0
Attacker Value
Unknown

CVE-2003-0052

Disclosure Date: March 07, 2003 (last updated February 22, 2025)
parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to list arbitrary directories.
0