vendor:
QuickTime
by:
7.5
CVSS
HIGH
Buffer Overflow
CWE
Product Name: QuickTime
Affected Version From: QuickTime 7.6.9
Affected Version To: Unknown (other versions may also be affected)
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Buffer-Overflow Vulnerability in Apple QuickTime
The vulnerability is due to a failure in properly bounds-checking user-supplied data. Successful exploits can allow attackers to execute arbitrary code as the logged-in user, while failed attempts may result in denial-of-service conditions.