5.1

CVE-2005-2756

Apple QuickTime before 7.0.3 allows user-assisted attackers to overwrite memory and execute arbitrary code via a crafted PICT file that triggers an overflow during expansion.

Data is provided by the National Vulnerability Database (NVD)
AppleQuicktime Editionwindows Version <= 7.0.2
AppleQuicktime Version6.5.2 Editionmac_os_x_10.2
AppleQuicktime Version6.5.2 Editionmac_os_x_10.3
AppleQuicktime Version7.0 Editionwindows
AppleQuicktime Version7.0.1 Editionmac_os_x_10.3
AppleQuicktime Version7.0.1 Editionmac_os_x_10.4
AppleQuicktime Version7.0.1 Editionwindows
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 2.31% 0.833
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.1 4.9 6.4
AV:N/AC:H/Au:N/C:P/I:P/A:P