PT-2008-4990 · Apple · Apple Quicktime

Publicado

2008-09-10

·

Atualizado

2018-10-30

·

CVE-2008-3614

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Apple QuickTime versions prior to 7.5.5
Description The issue is caused by an integer overflow in Apple QuickTime, which allows remote attackers to execute arbitrary code or cause a denial of service via a crafted PICT image. This triggers heap corruption.
Recommendations For versions prior to 7.5.5, update to version 7.5.5 or later to resolve the issue.

Correção

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-3614

Produtos afetados

Apple Quicktime