Vulnerabilities
Vulnerable Software
Apple:  >> Quicktime  >> 6.0.1  Security Vulnerabilities
Apple QuickTime before 7.7.5 does not properly perform a byte-swapping operation, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds memory access and application crash) via a crafted ttfo element in a movie file.
CVSS Score
9.3
EPSS Score
0.036
Published
2014-02-27
Buffer overflow in Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted clef atom in a movie file.
CVSS Score
9.3
EPSS Score
0.068
Published
2014-02-27
Untrusted search path vulnerability in the Picture Viewer in Apple QuickTime before 7.6.8 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse (1) CoreVideo.dll, (2) CoreGraphics.dll, or (3) CoreAudioToolbox.dll that is located in the same folder as a .pic image file.
CVSS Score
9.3
EPSS Score
0.038
Published
2013-12-27
QuickTime in Apple Mac OS X before 10.8.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted idsc atom in a QuickTime movie file.
CVSS Score
6.8
EPSS Score
0.024
Published
2013-09-16
Buffer overflow in Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted enof atoms in a movie file.
CVSS Score
9.3
EPSS Score
0.036
Published
2013-05-24
Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted QTIF file.
CVSS Score
9.3
EPSS Score
0.046
Published
2013-05-24
Buffer overflow in Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FPX file.
CVSS Score
9.3
EPSS Score
0.06
Published
2013-05-24
Buffer overflow in Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MP3 file.
CVSS Score
9.3
EPSS Score
0.06
Published
2013-05-24
Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted TeXML file.
CVSS Score
9.3
EPSS Score
0.055
Published
2013-05-24
Buffer overflow in Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with H.263 encoding.
CVSS Score
9.3
EPSS Score
0.049
Published
2013-05-24


Contact Us

Shodan ® - All rights reserved