Back to search
CVE-2011-0257
Published: Aug 15, 2011
Modified: Aug 6, 2024
PUBLISHED
Description
Integer signedness error in Apple QuickTime before 7.7 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PnSize opcode in a PICT file that triggers a stack-based buffer overflow.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://support.apple.com/kb/HT4826
x_refsource_CONFIRM
8365
third-party-advisory
x_refsource_SREASON
17777
exploit
x_refsource_EXPLOIT-DB
oval:org.mitre.oval:def:16059
vdb-entry
signature
x_refsource_OVAL
http://zerodayinitiative.com/advisories/ZDI-11-252/
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now