Vulnerabilities > Apple > Quicktime > 5.0

DATE CVE VULNERABILITY TITLE RISK
2009-06-02 CVE-2009-0955 Code Injection vulnerability in Apple Quicktime
Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted image description atoms in an Apple video file, related to a "sign extension issue."
network
apple CWE-94
critical
9.3
2009-06-02 CVE-2009-0954 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple QuickTime before 7.6.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a movie file containing crafted Clipping Region (CRGN) atom types.
network
apple CWE-119
critical
9.3
2009-06-02 CVE-2009-0953 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT image.
network
apple CWE-119
critical
9.3
2009-06-02 CVE-2009-0952 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted compressed PSD image.
network
apple CWE-119
critical
9.3
2009-06-02 CVE-2009-0951 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FLC compression file.
network
apple CWE-119
critical
9.3
2009-06-02 CVE-2009-0188 Resource Management Errors vulnerability in Apple Quicktime
Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie composed of a Sorenson 3 video file.
network
apple CWE-399
critical
9.3
2009-06-02 CVE-2009-0185 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted MS ADPCM encoded audio data in an AVI movie file.
network
apple CWE-119
critical
9.3
2009-01-21 CVE-2009-0007 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a QuickTime movie file containing invalid image width data in JPEG atoms within STSD atoms.
network
apple CWE-119
critical
9.3
2009-01-21 CVE-2009-0006 Numeric Errors vulnerability in Apple Quicktime
Integer signedness error in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a Cinepak encoded movie file with a crafted MDAT atom that triggers a heap-based buffer overflow.
network
apple CWE-189
critical
9.3
2009-01-21 CVE-2009-0005 Resource Management Errors vulnerability in Apple Quicktime
Unspecified vulnerability in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted H.263 encoded movie file that triggers memory corruption.
network
apple microsoft CWE-399
critical
9.3