Attack (Attack ID:319498)

Release Date2010/03/09

Attack NameEXPLOIT Apple QuickTime PDAT Atom Parsing buffer overflow -1 (CVE-2008-3625)

Severity

BUG ID

CVE ID

 

Description

Stack-based buffer overflow in Apple QuickTime before 7.5.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a QuickTime Virtual Reality (QTVR) movie file with crafted (1) maxTilt, (2) minFieldOfView, and (3) maxFieldOfView elements in panorama track PDAT atoms.
Impact:Remote code execution
Affected System:Others
Additional References:BID:31086;CVE-2008-3625

 

Solution

Update vendor's patch.