CVE-2005-2753
published 2005-11-05CVE-2005-2753: Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file that causes a sign extension…
PriorityP420medium5.1CVSS 2.0
AVNACHAuNCPIPAP
EPSS
2.14%
80.1th percentile
Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file that causes a sign extension of the length element in a Pascal style string.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | quicktime | <= 7.0.2 | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://docs.info.apple.com/article.html?artnum=302772http://pb.specialised.info/all/adv/quicktime-mov-io1-adv.txthttp://secunia.com/advisories/17428http://securitytracker.com/id?1015152http://www.osvdb.org/20475http://www.securityfocus.com/archive/1/415712/30/0/threadedhttp://www.securityfocus.com/bid/15306http://www.vupen.com/english/advisories/2005/2293http://docs.info.apple.com/article.html?artnum=302772http://pb.specialised.info/all/adv/quicktime-mov-io1-adv.txthttp://secunia.com/advisories/17428http://securitytracker.com/id?1015152http://www.osvdb.org/20475http://www.securityfocus.com/archive/1/415712/30/0/threadedhttp://www.securityfocus.com/bid/15306http://www.vupen.com/english/advisories/2005/2293
2005-11-05
Published