Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Quicktime
(Apple)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 246 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2005-12-31 | CVE-2005-2340 | Heap-based buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a crafted (1) QuickTime Image File (QTIF), (2) PICT, or (3) JPEG format image with a long data field. | Quicktime | N/A | ||
2005-05-12 | CVE-2005-1579 | Apple QuickTime Player 7.0 on Mac OS X 10.4 allows remote attackers to obtain sensitive information via a .mov file with a Quartz Composer composition (.qtz) file that uses certain patches to read local information, then other patches to send the information to the attacker. | Quicktime | N/A | ||
2005-03-01 | CVE-2004-0988 | Integer overflow on Apple QuickTime before 6.5.2, when running on Windows systems, allows remote attackers to cause a denial of service (memory consumption) via certain inputs that cause a large memory operation. | Quicktime | N/A | ||
2005-01-27 | CVE-2004-0922 | AFP Server on Mac OS X 10.3.x to 10.3.5, under certain conditions, does not properly set the guest group ID, which causes AFP to change a write-only AFP Drop Box to be read-write when the Drop Box is on a share that is mounted by a guest, which allows attackers to read the Drop Box. | Mac_os_x, Mac_os_x_server, Quicktime | N/A | ||
2005-01-27 | CVE-2004-0921 | AFP Server on Mac OS X 10.3.x to 10.3.5, when a guest has mounted an AFP volume, allows the guest to "terminate authenticated user mounts" via modified SessionDestroy packets. | Mac_os_x, Mac_os_x_server, Quicktime | N/A | ||
2004-07-07 | CVE-2004-0431 | Integer overflow in Apple QuickTime (QuickTime.qts) before 6.5.1 allows attackers to execute arbitrary code via a large "number of entries" field in the sample-to-chunk table data for a .mov movie file, which leads to a heap-based buffer overflow. | Quicktime | N/A | ||
2003-04-02 | CVE-2003-0168 | Buffer overflow in Apple QuickTime Player 5.x and 6.0 for Windows allows remote attackers to execute arbitrary code via a long QuickTime URL. | Quicktime | N/A | ||
2002-09-24 | CVE-2002-0376 | Buffer overflow in Apple QuickTime 5.0 ActiveX component allows remote attackers to execute arbitrary code via a long pluginspage field. | Quicktime | N/A | ||
2002-05-29 | CVE-2002-0252 | Buffer overflow in Apple QuickTime Player 5.01 and 5.02 allows remote web servers to execute arbitrary code via a response containing a long Content-Type MIME header. | Quicktime | N/A | ||
2001-05-03 | CVE-2001-0198 | Buffer overflow in QuickTime Player plugin 4.1.2 (Japanese) allows remote attackers to execute arbitrary commands via a long HREF parameter in an EMBED tag. | Quicktime | N/A |