Vulnerabilities > Apple > Quicktime > 7.1

DATE CVE VULNERABILITY TITLE RISK
2007-04-26 CVE-2007-2295 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in the JVTCompEncodeFrame function in Apple Quicktime 7.1.5 and other versions before 7.2 allows remote attackers to execute arbitrary code via a crafted H.264 MOV file.
network
apple CWE-119
critical
9.3
2007-03-05 CVE-2007-0718 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a QTIF file with a Video Sample Description containing a Color table ID of 0, which triggers memory corruption when QuickTime assumes that a color table exists.
network
apple CWE-119
5.8
2007-03-05 CVE-2007-0717 Code Execution vulnerability in Apple QuickTime
Integer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted QTIF file.
network
apple
5.8
2007-03-05 CVE-2007-0716 Code Execution vulnerability in Apple QuickTime
Stack-based buffer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted QTIF file.
network
apple
5.8
2007-03-05 CVE-2007-0715 Code Execution vulnerability in Apple QuickTime
Heap-based buffer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PICT file.
network
apple
5.8
2007-03-05 CVE-2007-0713 Code Execution vulnerability in Apple QuickTime
Heap-based buffer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted QuickTime movie file.
network
apple
5.8
2007-01-05 CVE-2007-0059 Remote Security vulnerability in QuickTime Player
Cross-zone scripting vulnerability in Apple Quicktime 3 to 7.1.3 allows remote user-assisted attackers to execute arbitrary code and list filesystem contents via a QuickTime movie (.MOV) with an HREF Track (HREFTrack) that contains an automatic action tag with a local URI, which is executed in a local zone during preview, as exploited by a MySpace worm.
network
apple
6.8
2006-09-12 CVE-2006-4389 Overflow and Exception vulnerability in Apple QuickTime
Apple QuickTime before 7.1.3 allows user-assisted remote attackers to execute arbitrary code via a crafted FlashPix (FPX) file, which triggers an exception that leads to an operation on an uninitialized object.
network
high complexity
apple
5.1
2006-09-12 CVE-2006-4388 Overflow and Exception vulnerability in Apple QuickTime
Integer overflow in Apple QuickTime before 7.1.3 allows user-assisted remote attackers to execute arbitrary code via a crafted FlashPix file.
network
high complexity
apple
5.1
2006-09-12 CVE-2006-4386 Overflow and Exception vulnerability in Apple QuickTime
Integer overflow in Apple QuickTime before 7.1.3 allows user-assisted remote attackers to execute arbitrary code via a crafted H.264 movie, a different issue than CVE-2006-4381.
network
high complexity
apple
5.1