This application requires Javascript for optimal performance.

Apple.QuickTime.Movie.File.Component.Name.Integer.Overflow

Release Date

Nov 04, 2005

Severity

high

Impact

Compromise of the affected system.



Description

This indicates a possible exploit of Buffer overflow vulnerability in Apple QuickTime before 7.0.3 that may allow user-complicit attackers to overwrite memory and execute arbitrary code via a crafted PICT file that triggers an overflow during expansion.

Affected Products

Apple QuickTime Player 7.0.2 and earlier versions.

Recommended Actions

Apple QuickTime Player 7.0.3

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2005-2755
CVE-2005-2756
CVE-2005-2753
CVE-2005-2754

Reference/s

http://www.securityfocus.com/bid/15306 (BugTraq)
http://www.securityfocus.com/bid/15309 (BugTraq)
http://www.securityfocus.com/bid/15307 (BugTraq)
http://www.securityfocus.com/bid/15308 (BugTraq)

Reference: VID-11299