Описание
Heap-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a H.264 (M4V) video format file with a certain modified size value.
Ссылки
- Patch
- PatchVendor Advisory
- Patch
- Patch
- US Government Resource
- Vendor Advisory
- Patch
- Patch
- PatchVendor Advisory
- Patch
- Patch
- US Government Resource
- Vendor Advisory
- Patch
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:apple:quicktime:7.0.3:*:*:*:*:*:*:*
cpe:2.3:a:apple:quicktime:7.0.4:*:*:*:*:*:*:*
EPSS
Процентиль: 94%
0.131
Средний
5.1 Medium
CVSS2
Дефекты
CWE-119
Связанные уязвимости
github
почти 4 года назад
Heap-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a H.264 (M4V) video format file with a certain modified size value.
EPSS
Процентиль: 94%
0.131
Средний
5.1 Medium
CVSS2
Дефекты
CWE-119