Show filters
116 Total Results
Displaying 91-100 of 116
Sort by:
Attacker Value
Unknown

CVE-2008-3626

Disclosure Date: September 11, 2008 (last updated October 04, 2023)
The CallComponentFunctionWithStorage function in Apple QuickTime before 7.5.5 does not properly handle a large entry in the sample_size_table in STSZ atoms, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file.
0
Attacker Value
Unknown

CVE-2008-3624

Disclosure Date: September 11, 2008 (last updated October 04, 2023)
Heap-based buffer overflow in Apple QuickTime before 7.5.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a QuickTime Virtual Reality (QTVR) movie file with crafted panorama atoms.
0
Attacker Value
Unknown

CVE-2008-3635

Disclosure Date: September 11, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in QuickTimeInternetExtras.qtx in an unspecified third-party Indeo v3.2 (aka IV32) codec for QuickTime, when used with Apple QuickTime before 7.5.5 on Windows, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file.
0
Attacker Value
Unknown

CVE-2008-3614

Disclosure Date: September 11, 2008 (last updated October 04, 2023)
Integer overflow in Apple QuickTime before 7.5.5 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT image, which triggers heap corruption.
0
Attacker Value
Unknown

CVE-2008-1739

Disclosure Date: September 03, 2008 (last updated October 04, 2023)
Apple QuickTime before 7.4.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted ftyp atoms in a movie file, which triggers memory corruption.
0
Attacker Value
Unknown

CVE-2007-6166

Disclosure Date: November 29, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac OS X, allows remote Real Time Streaming Protocol (RTSP) servers to execute arbitrary code via an RTSP response with a long Content-Type header.
0
Attacker Value
Unknown

CVE-2007-2402

Disclosure Date: July 15, 2007 (last updated October 04, 2023)
QuickTime for Java in Apple Quicktime before 7.2 does not perform sufficient "access control," which allows remote attackers to obtain sensitive information (screen content) via crafted Java applets.
0
Attacker Value
Unknown

CVE-2007-2396

Disclosure Date: July 15, 2007 (last updated October 04, 2023)
The JDirect support in QuickTime for Java in Apple Quicktime before 7.2 exposes certain dangerous interfaces, which allows remote attackers to execute arbitrary code via crafted Java applets.
0
Attacker Value
Unknown

CVE-2007-2397

Disclosure Date: July 15, 2007 (last updated October 04, 2023)
QuickTime for Java in Apple Quicktime before 7.2 does not properly check permissions, which allows remote attackers to disable security controls and execute arbitrary code via crafted Java applets.
0
Attacker Value
Unknown

CVE-2007-2392

Disclosure Date: July 15, 2007 (last updated October 04, 2023)
Apple Quicktime before 7.2 on Mac OS X 10.3.9 and 10.4.9 allows user-assisted remote attackers to execute arbitrary code via a crafted movie file that triggers memory corruption.
0