Attack (Attack ID:319496)

Release Date2010/03/09

Attack NameEXPLOIT Apple QuickTime MOV File String Handling integer overflow -1 (CVE-2005-2753)

Severity

BUG ID

CVE ID

 

Description

Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file that causes a sign extension of the length element in a Pascal style string.
Impact:Remote code execution
Affected System:Others
Additional References:BID:15306;CVE-2005-2753

 

Solution

Update vendor's patch.