10
CVSSv2

CVE-2007-0462

Published: 26/01/2007 Updated: 29/07/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The _GetSrcBits32ARGB function in Apple QuickDraw, as used by Quicktime 7.1.3 and other applications on Mac OS X 10.4.8 and previous versions, allows remote malicious users to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PICT image with a malformed Alpha RGB (ARGB) record, which triggers memory corruption.

Vulnerable Product Search on Vulmon Subscribe to Product

apple quicktime 7.1.3

apple mac os x 10.4.8

Exploits

source: wwwsecurityfocuscom/bid/22207/info Mac OS X QuickDraw is prone to a remote memory-corruption vulnerability because the software fails to properly handle malformed PICT image files Successfully exploiting this issue allows remote attackers to corrupt memory and crash the affected software Attackers may also be able to execute ar ...