Back to search
CVE-2007-2295
Published: Apr 26, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
Heap-based buffer overflow in the JVTCompEncodeFrame function in Apple Quicktime 7.1.5 and other versions before 7.2 allows remote attackers to execute arbitrary code via a crafted H.264 MOV file.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
26034
third-party-advisory
x_refsource_SECUNIA
http://security-protocols.com/sp-x45-advisory.php
x_refsource_MISC
1018373
vdb-entry
x_refsource_SECTRACK
35577
vdb-entry
x_refsource_OSVDB
quicktime-jvtcompencodeframe-bo(34070)
vdb-entry
x_refsource_XF
TA07-193A
third-party-advisory
x_refsource_CERT
ADV-2007-2510
vdb-entry
x_refsource_VUPEN
1017965
vdb-entry
x_refsource_SECTRACK
23650
vdb-entry
x_refsource_BID
http://docs.info.apple.com/article.html?artnum=305947
x_refsource_CONFIRM
quicktime-h264-code-execution(35356)
vdb-entry
x_refsource_XF
APPLE-SA-2007-07-11
vendor-advisory
x_refsource_APPLE
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now