Vulnerabilities > Apple > Quicktime > 7.4

DATE CVE VULNERABILITY TITLE RISK
2009-01-21 CVE-2009-0005 Resource Management Errors vulnerability in Apple Quicktime
Unspecified vulnerability in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted H.263 encoded movie file that triggers memory corruption.
network
apple microsoft CWE-399
critical
9.3
2009-01-21 CVE-2009-0004 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted MP3 audio file.
network
apple microsoft CWE-119
critical
9.3
2009-01-21 CVE-2009-0003 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and execute arbitrary code via an AVI movie file with an invalid nBlockAlign value in the _WAVEFORMATEX structure.
network
apple microsoft CWE-119
critical
9.3
2009-01-21 CVE-2009-0002 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a QTVR movie file with crafted THKD atoms.
network
apple microsoft CWE-119
critical
9.3
2009-01-21 CVE-2009-0001 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted RTSP URL.
network
apple microsoft CWE-119
critical
9.3
2008-09-11 CVE-2008-3635 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Stack-based buffer overflow in QuickTimeInternetExtras.qtx in an unspecified third-party Indeo v3.2 (aka IV32) codec for QuickTime, when used with Apple QuickTime before 7.5.5 on Windows, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file.
network
apple intel microsoft CWE-119
critical
9.3
2008-09-11 CVE-2008-3629 Resource Management Errors vulnerability in Apple Quicktime
Apple QuickTime before 7.5.5 allows remote attackers to cause a denial of service (application crash) via a crafted PICT image that triggers an out-of-bounds read.
4.3
2008-09-11 CVE-2008-3628 Resource Management Errors vulnerability in Apple Quicktime
Apple QuickTime before 7.5.5 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT image, related to an "invalid pointer issue."
network
apple microsoft CWE-399
critical
9.3
2008-09-11 CVE-2008-3627 Resource Management Errors vulnerability in Apple Quicktime
Apple QuickTime before 7.5.5 does not properly handle (1) MDAT atoms in MP4 video files within QuickTimeH264.qtx, (2) MDAT atoms in mov video files within QuickTimeH264.scalar, and (3) AVC1 atoms in an unknown media type within an unspecified component, which allows remote attackers to execute arbitrary code or cause a denial of service (heap corruption and application crash) via a crafted, H.264 encoded movie file.
network
apple CWE-399
critical
9.3
2008-09-11 CVE-2008-3626 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
The CallComponentFunctionWithStorage function in Apple QuickTime before 7.5.5 does not properly handle a large entry in the sample_size_table in STSZ atoms, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file.
network
apple CWE-119
6.8