Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m45q-xff8-38g3

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Apple QuickTime before 7.7.5 does not properly perform a byte-swapping operation, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds memory access and application crash) via a crafted ttfo element in a movie file.

Apple QuickTime before 7.7.5 does not properly perform a byte-swapping operation, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds memory access and application crash) via a crafted ttfo element in a movie file.

EPSS

Процентиль: 87%
0.03623
Низкий

Дефекты

CWE-119

Связанные уязвимости

nvd
почти 12 лет назад

Apple QuickTime before 7.7.5 does not properly perform a byte-swapping operation, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds memory access and application crash) via a crafted ttfo element in a movie file.

EPSS

Процентиль: 87%
0.03623
Низкий

Дефекты

CWE-119