CVE-2007-0059
published 2007-01-05CVE-2007-0059: Cross-zone scripting vulnerability in Apple Quicktime 3 to 7.1.3 allows remote user-assisted attackers to execute arbitrary code and list filesystem contents…
PriorityP432medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EXPLOIT
EPSS
5.64%
92.1th percentile
Cross-zone scripting vulnerability in Apple Quicktime 3 to 7.1.3 allows remote user-assisted attackers to execute arbitrary code and list filesystem contents via a QuickTime movie (.MOV) with an HREF Track (HREFTrack) that contains an automatic action tag with a local URI, which is executed in a local zone during preview, as exploited by a MySpace worm.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | quicktime | <= 7.1.3 | — |
| apple | quicktime | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Bugzilla
CVE-2007-6450 wireshark RPL dissector crash
bugzilla·2008-01-02·CVSS 5.0
CVE-2007-6450 [MEDIUM] CVE-2007-6450 wireshark RPL dissector crash
CVE-2007-6450 wireshark RPL dissector crash
Common Vulnerabilities and Exposures assigned an identifier CVE-2007-6450 to the following vulnerability:
The RPL dissector in Wireshark (formerly Ethereal) 0.9.8 to 0.99.6 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.
References:
http://www.wireshark.org/security/wnpa-sec-2007-03.html
Discussion:
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2008-0058.html
http://rhn.redhat.com/errata/RHSA-2008-0059.html
Bugzilla
CVE-2007-6451 wireshark CIP dissector crash
bugzilla·2008-01-02·CVSS 4.3
CVE-2007-6451 [MEDIUM] CVE-2007-6451 wireshark CIP dissector crash
CVE-2007-6451 wireshark CIP dissector crash
Common Vulnerabilities and Exposures assigned an identifier CVE-2007-6451 to the following vulnerability:
Unspecified vulnerability in the CIP dissector in Wireshark (formerly Ethereal) 0.9.14 to 0.99.6 allows remote attackers to cause a denial of service (crash) via unknown vectors that trigger allocation of large amounts of memory.
References:
http://www.wireshark.org/security/wnpa-sec-2007-03.html
Discussion:
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2008-0058.html
http://rhn.redhat.com/errata/RHSA-2008-0059.html
Bugzilla
CVE-2007-6121 wireshark RPC Portmap flaws
bugzilla·2007-11-23·CVSS 5.0
CVE-2007-6121 [MEDIUM] CVE-2007-6121 wireshark RPC Portmap flaws
CVE-2007-6121 wireshark RPC Portmap flaws
Common Vulnerabilities and Exposures assigned an identifier CVE-2007-6121 to the following vulnerability:
Wireshark (formerly Ethereal) 0.8.16 to 0.99.6 allows remote attackers
to cause a denial of service (crash) via a malformed RPC Portmap
packet.
Discussion:
wireshark-0.99.7-2.fc8 has been pushed to the Fedora 8 stable repository. If problems still persist, please make note of it in this bug report.
---
wireshark-0.99.7-1.fc7 has been pushed to the Fedora 7 stable repository. If problems still persist, please make note of it in this bug report.
---
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2008-0058.html
http://rhn.redhat.com/errata/RHSA-2008-0059.html
Fedora:
https://admin.fedoraproject.o
Bugzilla
CVE-2007-6117 wireshark HTTP dissector flaws
bugzilla·2007-11-23·CVSS 5.0
CVE-2007-6117 [MEDIUM] CVE-2007-6117 wireshark HTTP dissector flaws
CVE-2007-6117 wireshark HTTP dissector flaws
Common Vulnerabilities and Exposures assigned an identifier CVE-2007-6117 to the following vulnerability:
Unspecified vulnerability in the HTTP dissector for Wireshark
(formerly Ethereal) 0.10.14 to 0.99.6 has unknown impact and remote
attack vectors related to chunked messages.
Discussion:
wireshark-0.99.7-2.fc8 has been pushed to the Fedora 8 stable repository. If problems still persist, please make note of it in this bug report.
---
wireshark-0.99.7-1.fc7 has been pushed to the Fedora 7 stable repository. If problems still persist, please make note of it in this bug report.
---
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2008-0058.html
http://rhn.redhat.com/errata/RHSA-2008-0059.html
Fedo
Bugzilla
CVE-2007-6118 wireshark MEGACO dissector flaws
bugzilla·2007-11-23·CVSS 7.8
CVE-2007-6118 [HIGH] CVE-2007-6118 wireshark MEGACO dissector flaws
CVE-2007-6118 wireshark MEGACO dissector flaws
Common Vulnerabilities and Exposures assigned an identifier CVE-2007-6118 to the following vulnerability:
The MEGACO dissector in Wireshark (formerly Ethereal) 0.9.14 to 0.99.6
allows remote attackers to cause a denial of service (long loop and
resource consumption) via unknown vectors.
Discussion:
wireshark-0.99.7-2.fc8 has been pushed to the Fedora 8 stable repository. If problems still persist, please make note of it in this bug report.
---
wireshark-0.99.7-1.fc7 has been pushed to the Fedora 7 stable repository. If problems still persist, please make note of it in this bug report.
---
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2008-0058.html
http://rhn.redhat.com/errata/RHSA-2008-0059.
Bugzilla
CVE-2007-6120 wireshark Bluetooth SDP dissector flaws
bugzilla·2007-11-23·CVSS 5.0
CVE-2007-6120 [MEDIUM] CVE-2007-6120 wireshark Bluetooth SDP dissector flaws
CVE-2007-6120 wireshark Bluetooth SDP dissector flaws
Common Vulnerabilities and Exposures assigned an identifier CVE-2007-6120 to the following vulnerability:
The Bluetooth SDP dissector Wireshark (formerly Ethereal) 0.99.2 to
0.99.6 allows remote attackers to cause a denial of service (infinite
loop) via unknown vectors.
Discussion:
wireshark-0.99.7-2.fc8 has been pushed to the Fedora 8 stable repository. If problems still persist, please make note of it in this bug report.
---
wireshark-0.99.7-1.fc7 has been pushed to the Fedora 7 stable repository. If problems still persist, please make note of it in this bug report.
---
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2008-0058.html
http://rhn.redhat.com/errata/RHSA-2008-0059.html
Fedo
Bugzilla
CVE-2007-3392 Wireshark crashes when inspecting MMS traffic
bugzilla·2007-06-29·CVSS 5.0
CVE-2007-3392 [MEDIUM] CVE-2007-3392 Wireshark crashes when inspecting MMS traffic
CVE-2007-3392 Wireshark crashes when inspecting MMS traffic
+++ This bug was initially created as a clone of Bug #246225 +++
Description of problem:
Wireshark was reported to crash due to NULL pointer dereference when
attempting to dissect a fuzzed MMS traffic traffic.
Version-Release number of selected component (if applicable):
Wireshark 0.99.5
Additional info:
This is fixed in upstream revision 20837.
I was not able to reproduce this on an x86_64 architecture box.
Discussion:
Created attachment 158202
Capture file of MMS traffic that crashes Wireshark
---
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2007-0710.html
http://rhn.redhat.com/errata/RHSA-2007-0709.html
http://rhn.redhat.com/errata/RHSA-2008-0059.html
---
Reporter change
Bugzilla
CVE-2007-3392 Wireshark loops infinitely when inspecting SSL traffic
bugzilla·2007-06-26·CVSS 5.0
CVE-2007-3392 [MEDIUM] CVE-2007-3392 Wireshark loops infinitely when inspecting SSL traffic
CVE-2007-3392 Wireshark loops infinitely when inspecting SSL traffic
Description of problem:
Wireshark enters an infinite loop when dissecting certain SSL traffic.
Version-Release number of selected component (if applicable):
Wireshark 0.99.5
Additional info:
No reproducer is available. This is fixed in upstream revision 21665.
Discussion:
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2007-0710.html
http://rhn.redhat.com/errata/RHSA-2007-0709.html
http://rhn.redhat.com/errata/RHSA-2008-0059.html
---
Reporter changed to [email protected] by request of Jay Turner.
Bugzilla
CVE-2007-3389 Wireshark crashes when inspecting HTTP traffic
bugzilla·2007-06-26·CVSS 5.0
CVE-2007-3389 [MEDIUM] CVE-2007-3389 Wireshark crashes when inspecting HTTP traffic
CVE-2007-3389 Wireshark crashes when inspecting HTTP traffic
Description of problem:
Wireshark crashes due to assertion fail when dissecting certain
HTTP traffic.
Version-Release number of selected component (if applicable):
Wireshark 0.99.5
Steps to Reproduce:
1. Open the attached capture with the Wireshark GUI
2. Click on the last HTTP packet
Additional info:
This is fixed in upstream revision 21034.
Discussion:
Created attachment 157935
Capture file of HTTP traffic that crashes Wireshark
---
This issue was addressed in:
Red Hat Enterprise Linux:
http://rhn.redhat.com/errata/RHSA-2007-0710.html
http://rhn.redhat.com/errata/RHSA-2007-0709.html
http://rhn.redhat.com/errata/RHSA-2008-0059.html
---
Reporter changed to [email protected] by request of Jay Turner.
http://docs.info.apple.com/article.html?artnum=305149http://lists.apple.com/archives/Security-announce/2007/Mar/msg00000.htmlhttp://osvdb.org/31164http://projects.info-pull.com/moab/MOAB-03-01-2007.htmlhttp://www.gnucitizen.org/blog/backdooring-quicktime-movies/http://www.kb.cert.org/vuls/id/304064http://docs.info.apple.com/article.html?artnum=305149http://lists.apple.com/archives/Security-announce/2007/Mar/msg00000.htmlhttp://osvdb.org/31164http://projects.info-pull.com/moab/MOAB-03-01-2007.htmlhttp://www.gnucitizen.org/blog/backdooring-quicktime-movies/http://www.kb.cert.org/vuls/id/304064
2007-01-05
Published