CVE-2013-1024

Severity
6.8MEDIUM
EPSS
1.8%
top 17.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 5
Latest updateMay 17

Description

CoreMedia Playback in Apple Mac OS X before 10.8.4 does not properly initialize memory during the processing of text tracks, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file.

CVSS vector

AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4

Affected Packages2 packages

NVDapple/mac_os_x10.8.3+9
NVDapple/mac_os_x_server6 versions+5

🔴Vulnerability Details

2
GHSA
GHSA-c792-63qr-fg7v: CoreMedia Playback in Apple Mac OS X before 102022-05-17
CVEList
CVE-2013-1024: CoreMedia Playback in Apple Mac OS X before 102013-06-05

💥Exploits & PoCs

1
Exploit-DB
Linux Kernel 3.3.x < 3.7.x (Arch Linux x86-64) - 'sock_diag_handlers[]' Local Privilege Escalation (1)2013-02-27