CVE-2005-3713
- EPSS 39.68%
- Published 31.12.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Heap-based buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a GIF image file with a crafted Netscape Navigator Application Extension Block that modifies the heap in the Picture Modifier block.
CVE-2005-4092
- EPSS 44.09%
- Published 08.12.2005 11:03:00
- Last modified 03.04.2025 01:03:51
Multiple heap-based buffer overflows in QuickTime.qts in Apple QuickTime Player 7.0.3 and iTunes 6.0.1 (3) and earlier allow remote attackers to cause a denial of service (crash) and execute arbitrary code via a .mov file with (1) a Movie Resource at...
CVE-2005-2753
- EPSS 1.44%
- Published 05.11.2005 11:02:00
- Last modified 03.04.2025 01:03:51
Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file that causes a sign extension of the length element in a Pascal style string.
CVE-2005-2754
- EPSS 1.44%
- Published 05.11.2005 11:02:00
- Last modified 03.04.2025 01:03:51
Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file with "Improper movie attributes."
CVE-2005-2755
- EPSS 1.39%
- Published 05.11.2005 11:02:00
- Last modified 03.04.2025 01:03:51
Apple QuickTime Player before 7.0.3 allows user-assisted attackers to cause a denial of service (crash) via a crafted file with a missing movie attribute, which leads to a null dereference.
CVE-2005-2756
- EPSS 2.31%
- Published 05.11.2005 11:02:00
- Last modified 03.04.2025 01:03:51
Apple QuickTime before 7.0.3 allows user-assisted attackers to overwrite memory and execute arbitrary code via a crafted PICT file that triggers an overflow during expansion.
CVE-2005-2743
- EPSS 1.73%
- Published 26.10.2005 00:02:00
- Last modified 03.04.2025 01:03:51
The Java extensions for QuickTime 6.52 and earlier in Apple Mac OS X 10.3.9 allow untrusted applets to call arbitrary functions in system libraries, which allows remote attackers to execute arbitrary code.
- EPSS 2.81%
- Published 12.05.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Apple QuickTime Player 7.0 on Mac OS X 10.4 allows remote attackers to obtain sensitive information via a .mov file with a Quartz Composer composition (.qtz) file that uses certain patches to read local information, then other patches to send the inf...
- EPSS 0.66%
- Published 01.03.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Integer overflow on Apple QuickTime before 6.5.2, when running on Windows systems, allows remote attackers to cause a denial of service (memory consumption) via certain inputs that cause a large memory operation.
CVE-2004-0921
- EPSS 0.41%
- Published 27.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
AFP Server on Mac OS X 10.3.x to 10.3.5, when a guest has mounted an AFP volume, allows the guest to "terminate authenticated user mounts" via modified SessionDestroy packets.