Vulnerabilities > CVE-2002-0252 - Remote Buffer Overflow vulnerability in Apple QuickTime Content-Type

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
apple
exploit available

Summary

Buffer overflow in Apple QuickTime Player 5.01 and 5.02 allows remote web servers to execute arbitrary code via a response containing a long Content-Type MIME header.

Vulnerable Configurations

Part Description Count
Application
Apple
2

Exploit-Db

  • descriptionApple QuickTime 7.2/7.3 RSTP Response Universal Exploit (win/osx). CVE-2002-0252. Remote exploits for multiple platform
    fileexploits/multiple/remote/4673.rb
    idEDB-ID:4673
    last seen2016-01-31
    modified2007-11-29
    platformmultiple
    port
    published2007-11-29
    reporterSubreption LLC.
    sourcehttps://www.exploit-db.com/download/4673/
    titleApple QuickTime 7.2/7.3 - RSTP Response Universal Exploit win/osx
    typeremote
  • descriptionApple QuickTime 5.0 Content-Type Remote Buffer Overflow Vulnerability. CVE-2002-0252. Remote exploit for windows platform
    idEDB-ID:21286
    last seen2016-02-02
    modified2002-02-08
    published2002-02-08
    reporterUNYUN
    sourcehttps://www.exploit-db.com/download/21286/
    titleApple QuickTime 5.0 Content-Type Remote Buffer Overflow Vulnerability

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/61380/aquick-winosx.txt
idPACKETSTORM:61380
last seen2016-12-05
published2007-11-30
reporterSubreption LLC
sourcehttps://packetstormsecurity.com/files/61380/aquick-winosx.txt.html
titleaquick-winosx.txt

Seebug

  • bulletinFamilyexploit
    descriptionNo description provided by source.
    idSSV:7532
    last seen2017-11-19
    modified2007-11-30
    published2007-11-30
    reporterRoot
    sourcehttps://www.seebug.org/vuldb/ssvid-7532
    titleApple QuickTime 7.2/7.3 RSTP Response Universal Exploit (win/osx)
  • bulletinFamilyexploit
    descriptionNo description provided by source.
    idSSV:65014
    last seen2017-11-19
    modified2014-07-01
    published2014-07-01
    reporterRoot
    sourcehttps://www.seebug.org/vuldb/ssvid-65014
    titleApple QuickTime 7.2/7.3 - RSTP Response Universal Exploit (win/osx)