CVE-2007-4675
- EPSS 48.57%
- Published 07.11.2007 23:46:00
- Last modified 09.04.2025 00:30:58
Heap-based buffer overflow in the QuickTime VR extension 7.2.0.240 in QuickTime.qts in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via a QTVR (QuickTime Virtual Reality) movie file containing a large size field in the...
CVE-2007-4676
- EPSS 69.58%
- Published 07.11.2007 23:46:00
- Last modified 09.04.2025 00:30:58
Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via malformed elements when parsing (1) Poly type (0x0070 through 0x0074) and (2) PackBitsRgn field (0x0099) opcodes in a PICT image.
CVE-2007-4677
- EPSS 69.88%
- Published 07.11.2007 23:46:00
- Last modified 09.04.2025 00:30:58
Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via an invalid color table size when parsing the color table atom (CTAB) in a movie file, related to the CTAB RGB values.
CVE-2007-2228
- EPSS 76.67%
- Published 09.10.2007 22:17:00
- Last modified 09.04.2025 00:30:58
rpcrt4.dll (aka the RPC runtime library) in Microsoft Windows XP SP2, XP Professional x64 Edition, Server 2003 SP1 and SP2, Server 2003 x64 Edition and x64 Edition SP2, and Vista and Vista x64 Edition allows remote attackers to cause a denial of serv...
CVE-2007-5145
- EPSS 18.48%
- Published 01.10.2007 05:17:00
- Last modified 09.04.2025 00:30:58
Multiple buffer overflows in system DLL files in Microsoft Windows XP, as used by Microsoft Windows Explorer (explorer.exe) 6.00.2900.2180, Don Ho Notepad++, unspecified Adobe Macromedia applications, and other programs, allow user-assisted remote at...
CVE-2007-5133
- EPSS 45.24%
- Published 27.09.2007 19:17:00
- Last modified 09.04.2025 00:30:58
Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service (CPU consumption) via a certain PNG file with a large tEXt chunk that possibly triggers an integer overflow in PNG chunk size handling, as de...
CVE-2007-3034
- EPSS 81.88%
- Published 14.08.2007 21:17:00
- Last modified 09.04.2025 00:30:58
Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted metafile (image) with a large record length va...
CVE-2007-3724
- EPSS 0.26%
- Published 12.07.2007 16:30:00
- Last modified 09.04.2025 00:30:58
The process scheduler in the Microsoft Windows XP kernel does not make use of the process statistics kept by the kernel, performs scheduling based on CPU billing gathered from periodic process sampling ticks, and gives preference to "interactive" pro...
CVE-2007-3463
- EPSS 0.44%
- Published 27.06.2007 18:30:00
- Last modified 09.04.2025 00:30:58
Microsoft Windows XP SP2 allows local users, who have sessions created by another user's RunAs (run as) command, to kill arbitrary processes of this other user, as demonstrated by the taskkill program. NOTE: the researcher claims a vendor dispute in...
- EPSS 45.93%
- Published 27.06.2007 17:30:00
- Last modified 09.04.2025 00:30:58
Microsoft Windows 2000, XP, and Server 2003 allows remote attackers to cause a denial of service (cpu consumption) via a PNG image with crafted (1) Width and (2) Height values in the IHDR block.