Integer overflow in Apple Quicktime before 7.2 on Mac OS X 10.3.9 and 10.4.9 allows user-assisted remote attackers to execute arbitrary code via crafted (1) title and (2) author fields in an SMIL file, related to improper calculations for memory allocation.
Link | Tags |
---|---|
http://secunia.com/advisories/26034 | third party advisory patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/35357 | vdb entry |
http://www.securitytracker.com/id?1018373 | vdb entry |
http://www.us-cert.gov/cas/techalerts/TA07-193A.html | third party advisory us government resource |
http://www.vupen.com/english/advisories/2007/2510 | vdb entry |
http://www.securityfocus.com/bid/24873 | vdb entry |
http://www.securityfocus.com/archive/1/473882/100/100/threaded | mailing list |
http://docs.info.apple.com/article.html?artnum=305947 | |
http://lists.apple.com/archives/Security-announce/2007/Jul/msg00001.html | patch vendor advisory |
http://osvdb.org/36134 | vdb entry |
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=556 | third party advisory patch |