Zero-friction vulnerability management platform

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Apple QuickTime Multiple Vulnerabilities - Jun09

Information

Severity

Severity

Critical

Family

Family

Denial of Service

CVSSv2 Base

CVSSv2 Base

9.3

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:M/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

13 years ago

Modified

Modified

3 years ago

Summary

The host is installed with Apple QuickTime which is prone to Multiple Vulnerabilities.

Insight

Insight

The flaws are due to - an unspecified error while handling malicious 1)FLC compression files, 2)compressed PSD images, 3)PICT images, 4)JP2 images. - an error in the parsing of Sorenson Video 3 content. - a boundary error in the processing of MS ADPCM encoded audio data. - an error due to the usage of uninitialised memory when a movie with a user data atom size of zero is viewed. - a sign extension error while the handling malicious image description atoms in an Apple video file.

Affected Software

Affected Software

Apple QuickTime version prior to 7.6.2 on Windows.

Solution

Solution

Upgrade to Apple QuickTime version 7.6.2 or later.