Attack (Attack ID:319494)

Release Date2010/03/09

Attack NameEXPLOIT Apple QuickTime Color Table Atom Movie file handling heap corruption -1 (CVE-2007-4677)

Severity

BUG ID

CVE ID

 

Description

Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via an invalid color table size when parsing the color table atom (CTAB) in a movie file, related to the CTAB RGB values.
Impact:Remote code execution
Affected System:Others
Additional References:BID:26338;CVE-2007-4677

 

Solution

Update vendor's patch.