Show filters
99 Total Results
Displaying 91-99 of 99
Sort by:
Attacker Value
Unknown
CVE-2008-3626
Disclosure Date: September 11, 2008 (last updated October 04, 2023)
The CallComponentFunctionWithStorage function in Apple QuickTime before 7.5.5 does not properly handle a large entry in the sample_size_table in STSZ atoms, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file.
0
Attacker Value
Unknown
CVE-2008-3624
Disclosure Date: September 11, 2008 (last updated October 04, 2023)
Heap-based buffer overflow in Apple QuickTime before 7.5.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a QuickTime Virtual Reality (QTVR) movie file with crafted panorama atoms.
0
Attacker Value
Unknown
CVE-2008-3635
Disclosure Date: September 11, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in QuickTimeInternetExtras.qtx in an unspecified third-party Indeo v3.2 (aka IV32) codec for QuickTime, when used with Apple QuickTime before 7.5.5 on Windows, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file.
0
Attacker Value
Unknown
CVE-2008-3614
Disclosure Date: September 11, 2008 (last updated October 04, 2023)
Integer overflow in Apple QuickTime before 7.5.5 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT image, which triggers heap corruption.
0
Attacker Value
Unknown
CVE-2008-1739
Disclosure Date: September 03, 2008 (last updated October 04, 2023)
Apple QuickTime before 7.4.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted ftyp atoms in a movie file, which triggers memory corruption.
0
Attacker Value
Unknown
CVE-2007-6238
Disclosure Date: December 04, 2007 (last updated October 04, 2023)
Unspecified vulnerability in Apple QuickTime 7.2 on Windows XP allows remote attackers to execute arbitrary code via unknown attack vectors, probably a different vulnerability than CVE-2007-6166. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release advisories with actionable information. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine. However, the organization has stated that this is different than CVE-2007-6166.
0
Attacker Value
Unknown
CVE-2007-6166
Disclosure Date: November 29, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac OS X, allows remote Real Time Streaming Protocol (RTSP) servers to execute arbitrary code via an RTSP response with a long Content-Type header.
0
Attacker Value
Unknown
CVE-2007-4674
Disclosure Date: November 27, 2007 (last updated October 04, 2023)
An "integer arithmetic" error in Apple QuickTime 7.2 allows remote attackers to execute arbitrary code via a crafted movie file containing a movie atom with a large size value, which triggers a stack-based buffer overflow.
0
Attacker Value
Unknown
CVE-2007-4673
Disclosure Date: October 04, 2007 (last updated October 04, 2023)
Argument injection vulnerability in Apple QuickTime 7.2 for Windows XP SP2 and Vista allows remote attackers to execute arbitrary commands via a URL in the qtnext field in a crafted QTL file. NOTE: this issue may be related to CVE-2006-4965 or CVE-2007-5045.
0