PT-2007-3726 · Apple · Apple Quicktime

Adam Gowdiak

·

Published

2007-07-15

·

Updated

2018-10-30

·

CVE-2007-2393

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Apple Quicktime versions prior to 7.2
Description The issue concerns the design of QuickTime for Java, which allows remote attackers to bypass certain security controls. This can be achieved via Java applets and may lead to writing to process memory, possibly resulting in arbitrary code execution.
Recommendations For versions prior to 7.2, update to version 7.2 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-2393

Affected Products

Apple Quicktime