Get a Pentest and security assessment of your IT network.

Advisories

Zero Day Initiative Advisory 08-014

A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Apple QuickTime. User interaction is required to exploit this vulnerability in that the target must open a malicious file. The specific flaw exists in the quickTime.qts while parsing corrupted .pict files. The module contains a vulnerable memory copy loop which searches for a terminator value. When this value is changed or omitted, a heap corruption occurs allowing the execution of arbitrary code. Version 7.4.1 is affected.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/65206/ZDI-08-014.txt

Source: https://packetstormsecurity.com/files/65206/Zero-Day-Initiative-Advisory-08-014.html

Related posts
Advisories

crossZone.txt

Advisories

Secunia Security Advisory 16900

Advisories

Secunia Security Advisory 19793

Advisories

Secunia Security Advisory 22534