Vulnerabilities > Apple > Quicktime > 6.4.0

DATE CVE VULNERABILITY TITLE RISK
2006-05-12 CVE-2006-1453 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Stack-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted QuickDraw PICT image format file containing malformed font information.
network
high complexity
apple CWE-119
5.1
2005-12-31 CVE-2005-3713 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a GIF image file with a crafted Netscape Navigator Application Extension Block that modifies the heap in the Picture Modifier block.
network
low complexity
apple CWE-119
7.5
2005-12-31 CVE-2005-3711 Numeric Errors vulnerability in Apple Quicktime
Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a TIFF image file with modified (1) "strips" (StripByteCounts) or (2) "bands" (StripOffsets) values.
network
low complexity
apple CWE-189
7.5
2005-12-31 CVE-2005-3710 Numeric Errors vulnerability in Apple Quicktime
Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a TIFF image file with modified image height and width (ImageWidth) tags.
network
low complexity
apple CWE-189
7.5
2005-12-31 CVE-2005-3709 Numeric Errors vulnerability in Apple Quicktime
Integer underflow in Apple Quicktime before 7.0.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the Color Map Entry Size in a TGA image file.
network
low complexity
apple CWE-189
7.5
2005-12-31 CVE-2005-3708 Code Execution vulnerability in RETIRED: Apple QuickTime
Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via crafted TGA image files.
network
low complexity
apple
7.5
2005-12-31 CVE-2005-3707 Code Execution vulnerability in RETIRED: Apple QuickTime
Buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via crafted TGA image files.
network
low complexity
apple
7.5
2005-12-31 CVE-2005-2340 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a crafted (1) QuickTime Image File (QTIF), (2) PICT, or (3) JPEG format image with a long data field.
network
low complexity
apple CWE-119
7.5
2005-11-05 CVE-2005-2756 Remote Buffer Overflow vulnerability in Apple QuickTime Compressed PICT Data
Apple QuickTime before 7.0.3 allows user-assisted attackers to overwrite memory and execute arbitrary code via a crafted PICT file that triggers an overflow during expansion.
network
high complexity
apple
5.1
2005-11-05 CVE-2005-2755 Denial of Service vulnerability in Apple QuickTime Null Pointer Dereference
Apple QuickTime Player before 7.0.3 allows user-assisted attackers to cause a denial of service (crash) via a crafted file with a missing movie attribute, which leads to a null dereference.
network
high complexity
apple
2.6