Vulnerabilities > CVE-2005-3709 - Numeric Errors vulnerability in Apple Quicktime
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Integer underflow in Apple Quicktime before 7.0.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the Color Map Entry Size in a TGA image file.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
Nessus
NASL family | Windows |
NASL id | QUICKTIME_704.NASL |
description | The remote Windows host is running a version of QuickTime prior to 7.0.4. The remote version of QuickTime is vulnerable to various buffer overflows involving specially crafted image and media files. An attacker may be able to leverage these issues to execute arbitrary code on the remote host by sending a malformed file to a victim and have him open it using QuickTime player. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 20395 |
published | 2006-01-11 |
reporter | This script is Copyright (C) 2006-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/20395 |
title | QuickTime < 7.0.4 Multiple Vulnerabilities (Windows) |
code |
|
References
- http://archives.neohapsis.com/archives/fulldisclosure/2006-01/0447.html
- http://archives.neohapsis.com/archives/fulldisclosure/2006-01/0447.html
- http://docs.info.apple.com/article.html?artnum=303101
- http://docs.info.apple.com/article.html?artnum=303101
- http://secunia.com/advisories/18370
- http://secunia.com/advisories/18370
- http://securitytracker.com/id?1015464
- http://securitytracker.com/id?1015464
- http://www.osvdb.org/22336
- http://www.osvdb.org/22336
- http://www.securityfocus.com/bid/16202
- http://www.securityfocus.com/bid/16202
- http://www.vupen.com/english/advisories/2006/0128
- http://www.vupen.com/english/advisories/2006/0128
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24058
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24058