Attack (Attack ID:319504)

Release Date2010/03/09

Attack NameFILE Apple QuickTime STSD JPEG Atom heap corruption -1 (CVE-2009-0007)

Severity

BUG ID

CVE ID

 

Description

Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a QuickTime movie file containing invalid image width data in JPEG atoms within STSD atoms.
Impact:Remote code execution
Affected System:Others
Additional References:BID:33390;CVE-2009-0007

 

Solution

Update vendor's patch.