KLA10017
Multiple vulnerabilities in Apple QuickTime
Обновлено: 12/02/2015
CVSS
9.3
Дата обнаружения
22/05/2013
Уровень угрозы
Critical
Описание

Multiple serious vulnerabilities have been found in Apple QuickTime. Malicious users can exploit these vulnerabilities to execute arbitrary code or cause denial of service.

Vectors related to unknown applications can be exploited to  execute arbitrary code or cause denial of service via specially designed TeXML, FPX, MP3 or QTIF files; dref, enof or mvhd atoms; or a movie file with H.263, H.264, Sorenson encodings or containing specially designed JPEG data.

 

Пораженные продукты

Apple QuickTime versions 7.7.3 and earlier

Решение

Update to latest version
QuickTime

Первичный источник обнаружения
Apple entry
Оказываемое влияние
?
ACE 
[?]

DoS 
[?]
Связанные продукты
Apple QuickTime
CVE-IDS

CVE-2013-1020
CVE-2013-1022
CVE-2013-1021
CVE-2013-0986
CVE-2013-0987
CVE-2013-0989
CVE-2013-1018
CVE-2013-1019
CVE-2013-0988
CVE-2013-1016
CVE-2013-1017
CVE-2013-1015