vendor:
QuickTime Player
by:
KedAns-Dz
7.5
CVSS
HIGH
Stack-based buffer overflow
CWE
Product Name: QuickTime Player
Affected Version From: QuickTime 7.5.x
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE: a:apple:quicktime:7.5
Platforms Tested: Windows
Unknown
QuickTime Player v 7.5.x (m3u) Stack Buffer Overflow
Apple QuickTime is prone to a stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data. An attacker can exploit this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely result in denial-of-service conditions.
Mitigation:
Apply the latest security updates from Apple to fix this vulnerability.