Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted rnet box in an MP4 movie file.
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Note | — | Apply OS X security update 2013-001Upgrade macOS to the latest versionApply OS X security update 2013-002 | Aug 28, 2015 | Nov 9, 2012 |
| Apple Osx Quicktime | — | Upgrade macOS to the latest versionApply OS X security update 2013-001 | Apr 3, 2013 | Nov 9, 2012 |
| Quicktime | — | Upgrade to Apple QuickTime version 7.7.3 | Nov 14, 2012 | Nov 9, 2012 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub