CVE-2015-3667
published 2015-07-03CVE-2015-3667: QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X before 10.10.4 and other products, allows remote attackers to execute arbitrary code or…
PriorityP434medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
3.64%
88.4th percentile
QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X before 10.10.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file, a different vulnerability than CVE-2015-3661, CVE-2015-3662, CVE-2015-3663, CVE-2015-3666, and CVE-2015-3668.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | <= 10.10.3 | — |
| apple | os_x_yosemite_v10.10.4_and_security_update_2015-005 | — | — |
| apple | quicktime | <= 7.7.6 | — |
| apple | quicktime | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2015-3667: OS X Yosemite v10.10.4 and Security Update 2015-005
vendor_apple·CVSS 6.8
CVE-2015-3667 [MEDIUM] CVE-2015-3667: OS X Yosemite v10.10.4 and Security Update 2015-005
Apple Security Update: About the security content of OS X Yosemite v10.10.4 and Security Update 2015-005
Product: OS X Yosemite v10.10.4 and Security Update 2015-005
CVE: CVE-2015-3667
Component: CVE-ID
Apple
CVE-2015-3667: QuickTime 7.7.7
vendor_apple·CVSS 6.8
CVE-2015-3667 [MEDIUM] CVE-2015-3667: QuickTime 7.7.7
Apple Security Update: About the security content of QuickTime 7.7.7
Product: QuickTime
Version: 7.7.7
CVE: CVE-2015-3667
Component: CVE-ID
GHSA
GHSA-wfqh-gccr-77jr: QT Media Foundation in Apple QuickTime before 7
ghsa_unreviewed·2022-05-17·CVSS 6.8
CVE-2015-3663 [MEDIUM] CWE-119 GHSA-wfqh-gccr-77jr: QT Media Foundation in Apple QuickTime before 7
QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X before 10.10.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file, a different vulnerability than CVE-2015-3661, CVE-2015-3662, CVE-2015-3666, CVE-2015-3667, and CVE-2015-3668.
GHSA
GHSA-58wr-p3w5-wm2j: QT Media Foundation in Apple QuickTime before 7
ghsa_unreviewed·2022-05-17·CVSS 6.8
CVE-2015-3667 [MEDIUM] CWE-119 GHSA-58wr-p3w5-wm2j: QT Media Foundation in Apple QuickTime before 7
QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X before 10.10.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file, a different vulnerability than CVE-2015-3661, CVE-2015-3662, CVE-2015-3663, CVE-2015-3666, and CVE-2015-3668.
GHSA
GHSA-xgfq-5hc7-wrmc: QT Media Foundation in Apple QuickTime before 7
ghsa_unreviewed·2022-05-17·CVSS 6.8
CVE-2015-3666 [MEDIUM] CWE-119 GHSA-xgfq-5hc7-wrmc: QT Media Foundation in Apple QuickTime before 7
QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X before 10.10.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file, a different vulnerability than CVE-2015-3661, CVE-2015-3662, CVE-2015-3663, CVE-2015-3667, and CVE-2015-3668.
GHSA
GHSA-535h-r53g-x9v4: QT Media Foundation in Apple QuickTime before 7
ghsa_unreviewed·2022-05-17·CVSS 6.8
CVE-2015-3662 [MEDIUM] CWE-119 GHSA-535h-r53g-x9v4: QT Media Foundation in Apple QuickTime before 7
QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X before 10.10.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file, a different vulnerability than CVE-2015-3661, CVE-2015-3663, CVE-2015-3666, CVE-2015-3667, and CVE-2015-3668.
GHSA
GHSA-rc98-9q2q-438r: QT Media Foundation in Apple QuickTime before 7
ghsa_unreviewed·2022-05-17·CVSS 6.8
CVE-2015-3661 [MEDIUM] CWE-119 GHSA-rc98-9q2q-438r: QT Media Foundation in Apple QuickTime before 7
QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X before 10.10.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file, a different vulnerability than CVE-2015-3662, CVE-2015-3663, CVE-2015-3666, CVE-2015-3667, and CVE-2015-3668.
GHSA
GHSA-x5w7-v6pc-m6c4: QT Media Foundation in Apple QuickTime before 7
ghsa_unreviewed·2022-05-17·CVSS 6.8
CVE-2015-3668 [MEDIUM] CWE-119 GHSA-x5w7-v6pc-m6c4: QT Media Foundation in Apple QuickTime before 7
QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X before 10.10.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file, a different vulnerability than CVE-2015-3661, CVE-2015-3662, CVE-2015-3663, CVE-2015-3666, and CVE-2015-3667.
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: Apple Quicktime Corrupt stbl Atom Remote CodeExecution
blogs_talos·2015-06-30·CVSS 6.8
[MEDIUM] Vulnerability Spotlight: Apple Quicktime Corrupt stbl Atom Remote CodeExecution
## Vulnerability Spotlight: Apple Quicktime Corrupt stbl Atom Remote CodeExecution
This post was authored by Rich Johnson , William Largent , and Ryan Pentney . Earl Carter contributed to this post.
Cisco Talos, in conjunction with Apple’s security advisory issued on June 30th, is disclosing the discovery of a remote code execution vulnerability within Apple Quicktime. This vulnerability was initially discovered by the Talos Vulnerability Research & Development Team and reported in accordance with responsible disclosure policies to Apple.
There is a remote code execution vulnerability in Apple Quicktime ( TALOS-2015-0018/CVE-2015-3667 ). An attacker who can control the data inside an stbl atom in a .MOV file can cause an undersized allocation which can lead to an out-of-bounds read. An
Talos
Vulnerability Spotlight: Apple Quicktime Corrupt stbl Atom Remote CodeExecution
blogs_talos·2015-06-30·CVSS 6.8
[MEDIUM] Vulnerability Spotlight: Apple Quicktime Corrupt stbl Atom Remote CodeExecution
This post was authored by Rich Johnson, William Largent, and Ryan Pentney. Earl Carter contributed to this post.
Cisco Talos, in conjunction with Apple’s security advisory issued on June 30th, is disclosing the discovery of a remote code execution vulnerability within Apple Quicktime. This vulnerability was initially discovered by the Talos Vulnerability Research & Development Team and reported in accordance with responsible disclosure policies to Apple.
There is a remote code execution vulnerability in Apple Quicktime (TALOS-2015-0018/CVE-2015-3667). An attacker who can control the data inside an stbl atom in a .MOV file can cause an undersized allocation which can lead to an out-of-bounds read. An attacker can use this to create a use-after-free scenario that could lead to remote code
http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2015/Jun/msg00005.htmlhttp://support.apple.com/kb/HT204942http://support.apple.com/kb/HT204947http://www.securityfocus.com/bid/75493http://www.securitytracker.com/id/1032756http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2015/Jun/msg00005.htmlhttp://support.apple.com/kb/HT204942http://support.apple.com/kb/HT204947http://www.securityfocus.com/bid/75493http://www.securitytracker.com/id/1032756
2015-07-03
Published