MEDIUM
Heap-based buffer overflow in Apple QuickTime before 7.5 on Windows allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted packed scanlines in PixData structures in a PICT image
Published Jun 10, 2008
6.8
MEDIUMCVSS 2.0
EPSS 4.61%
Description
Heap-based buffer overflow in Apple QuickTime before 7.5 on Windows allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted packed scanlines in PixData structures in a PICT image.
Affected products
No data.
AND
Running on/with
OR
- n/a
- n/a
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (12)
- http://lists.apple.com/archives/security-announce/2008/Jun/msg00000.html vendor-advisoryx_refsource_APPLEPatch
- http://secunia.com/advisories/29293 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/secunia_research/2008-9/advisory/ x_refsource_MISCVendor Advisory
- http://support.apple.com/kb/HT1991 x_refsource_CONFIRM
- http://www.securityfocus.com/archive/1/493225/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/29619 vdb-entryx_refsource_BID
- http://www.securityfocus.com/bid/29649 vdb-entryx_refsource_BID
- http://www.securitytracker.com/id?1020213 vdb-entryx_refsource_SECTRACK
- http://www.us-cert.gov/cas/techalerts/TA08-162C.html third-party-advisoryx_refsource_CERTUS Government Resource
- http://www.vupen.com/english/advisories/2008/1776/references vdb-entryx_refsource_VUPEN
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2008-1582 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/42943 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://lists.apple.com/archives/security-announce/2008/Jun/msg00000.html | vendor-advisoryx_refsource_APPLEPatch | |
| http://secunia.com/advisories/29293 | third-party-advisoryx_refsource_SECUNIA | |
| http://secunia.com/secunia_research/2008-9/advisory/ | x_refsource_MISCVendor Advisory | |
| http://support.apple.com/kb/HT1991 | x_refsource_CONFIRM | |
| http://www.securityfocus.com/archive/1/493225/100/0/threaded | mailing-listx_refsource_BUGTRAQ | |
| http://www.securityfocus.com/bid/29619 | vdb-entryx_refsource_BID | |
| http://www.securityfocus.com/bid/29649 | vdb-entryx_refsource_BID | |
| http://www.securitytracker.com/id?1020213 | vdb-entryx_refsource_SECTRACK | |
| http://www.us-cert.gov/cas/techalerts/TA08-162C.html | third-party-advisoryx_refsource_CERTUS Government Resource | |
| http://www.vupen.com/english/advisories/2008/1776/references | vdb-entryx_refsource_VUPEN | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2008-1582 | Advisory | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/42943 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jun 10, 2008
Updated Aug 7, 2024
Reserved Mar 31, 2008
Link CVE-2008-1581
CISA Vulnrichment
No data
Red Hat
No data
GitHub
No data