CVE-2009-0006
published 2009-01-21CVE-2009-0006: Integer signedness error in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute…
PriorityP341critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
8.20%
94.3th percentile
Integer signedness error in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a Cinepak encoded movie file with a crafted MDAT atom that triggers a heap-based buffer overflow.
Affected
45 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | quicktime | <= 7.5.5 | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
| apple | quicktime | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9rqj-wrj3-5984: Integer signedness error in Apple QuickTime before 7
ghsa_unreviewed·2022-05-02
CVE-2009-0006 [HIGH] GHSA-9rqj-wrj3-5984: Integer signedness error in Apple QuickTime before 7
Integer signedness error in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a Cinepak encoded movie file with a crafted MDAT atom that triggers a heap-based buffer overflow.
VMware
VMware Hosted products and patches for ESX and ESXi resolve a critical security vulnerability
vendor_vmware·2009-04-10·CVSS 4.6
CVE-2008-4916 [MEDIUM] VMware Hosted products and patches for ESX and ESXi resolve a critical security vulnerability
VMSA-2009-0006: VMware Hosted products and patches for ESX and ESXi resolve a critical security vulnerability
a. Host code execution vulnerability from a guest operating system A critical vulnerability in the virtual machine display function might allow a guest operating system to run code on the host. This issue is different from the vulnerability in a guest virtual device driver reported in VMware security advisory VMSA-2009-0005 on 2009-04-03. That vulnerability can cause a potential denial of service and is identified by CVE-2008-4916. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2009-1244 to this issue. The following table lists what action remediates the vulnerability (column 4) if a solution is available. VMware Product ============= Pr
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-8094 xorg-x11-server: integer overflow in DRI2 extension function ProcDRI2GetBuffers()
bugzilla·2014-11-27·CVSS 6.5
CVE-2014-8094 [MEDIUM] CVE-2014-8094 xorg-x11-server: integer overflow in DRI2 extension function ProcDRI2GetBuffers()
CVE-2014-8094 xorg-x11-server: integer overflow in DRI2 extension function ProcDRI2GetBuffers()
ProcDRI2GetBuffers() function call do not check that its calculations for how much memory
is needed to handle the client's request have not overflowed, so can
result in out of bounds reads or writes. These calls all occur only
after a client has successfully authenticated itself.
Introduced in xorg-server-1.7.0 (2009).
Discussion:
Created attachment 962135
0006-dri2_integer_overflow_in_ProcDRI2GetBuffers_CVE-2014-8094.patch
---
Authenticated client can cause integer overflow on the server which later results in OOB read and consequent crash.
---
External References:
http://www.x.org/wiki/Development/Security/Advisory-2014-12-09/
---
This issue has been addressed in the following produ
Bugzilla
CVE-2009-0501 moodle: calendar export may allow brute force attacks
bugzilla·2009-02-10·CVSS 5.0
CVE-2009-0501 [MEDIUM] CVE-2009-0501 moodle: calendar export may allow brute force attacks
CVE-2009-0501 moodle: calendar export may allow brute force attacks
me: CVE-2009-0501
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0501
Assigned: 20090209
Reference: MLIST:[oss-security] 20090204 CVS request - Moodle
Reference: URL: http://www.openwall.com/lists/oss-security/2009/02/04/1
Reference: CONFIRM: http://moodle.org/security/
Unspecified vulnerability in the Calendar export feature in Moodle 1.8
before 1.8.8 and 1.9 before 1.9.4 allows attackers to obtain sensitive
information and conduct "brute force attacks on user accounts" via
unknown vectors.
Additional information from upstream (http://moodle.org/security/)
MSA-09-0006: Calendar export may allow brute force attacks
Versions affected: < 1.9.4, < 1.8.8, < 1.7.7
http://cvs.moodle.org/moodle/calendar/export_e
Bugzilla
CVE-2008-2368 Certificate System: plain text passwords stored in debug log
bugzilla·2008-06-18·CVSS 2.1
CVE-2008-2368 [LOW] CVE-2008-2368 Certificate System: plain text passwords stored in debug log
CVE-2008-2368 Certificate System: plain text passwords stored in debug log
It was discovered that Red Hat Certificate System may store plain text passwords
in multiple debug log files (such as UserDirEnrollment password or RA wizard
installer log).
This problem allows any local user to extract plain text passwords from the Red
Hat Certificate System debug log files.
Discussion:
Lifting embargo.
---
This issue was addressed in:
Red Hat Certificate System:
http://rhn.redhat.com/errata/RHSA-2009-0006.html
http://rhn.redhat.com/errata/RHSA-2009-0007.html
Bugzilla
CVE-2008-2367 Certificate System: insecure config file permissions
bugzilla·2008-06-18·CVSS 2.1
CVE-2008-2367 [LOW] CVE-2008-2367 Certificate System: insecure config file permissions
CVE-2008-2367 Certificate System: insecure config file permissions
It was discovered that Red Hat Certificate System use insecure default file
permissions on configuration files (such as password.conf) that may contain
authentication credentials or other sensitive information that should only be
accessible to administrative and service users.
This problem allows any local user to read Red Hat Certificate System
configuration files.
Discussion:
Lifting embargo.
---
This issue was addressed in:
Red Hat Certificate System:
http://rhn.redhat.com/errata/RHSA-2009-0006.html
http://rhn.redhat.com/errata/RHSA-2009-0007.html
http://archives.neohapsis.com/archives/bugtraq/2009-01/0215.htmlhttp://lists.apple.com/archives/security-announce/2009/Jan/msg00000.htmlhttp://osvdb.org/51529http://secunia.com/advisories/33632http://support.apple.com/kb/HT3403http://www.securityfocus.com/archive/1/500391/100/0/threadedhttp://www.securityfocus.com/bid/33388http://www.us-cert.gov/cas/techalerts/TA09-022A.htmlhttp://www.vupen.com/english/advisories/2009/0212http://www.zerodayinitiative.com/advisories/ZDI-09-007/https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6153http://archives.neohapsis.com/archives/bugtraq/2009-01/0215.htmlhttp://lists.apple.com/archives/security-announce/2009/Jan/msg00000.htmlhttp://osvdb.org/51529http://secunia.com/advisories/33632http://support.apple.com/kb/HT3403http://www.securityfocus.com/archive/1/500391/100/0/threadedhttp://www.securityfocus.com/bid/33388http://www.us-cert.gov/cas/techalerts/TA09-022A.htmlhttp://www.vupen.com/english/advisories/2009/0212http://www.zerodayinitiative.com/advisories/ZDI-09-007/https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6153
2009-01-21
Published