CVE-2015-5786
published 2015-08-25CVE-2015-5786: Apple QuickTime before 7.7.8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a…
PriorityP434medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
3.21%
86.8th percentile
Apple QuickTime before 7.7.8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted file, a different vulnerability than CVE-2015-5785.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | quicktime | <= 7.7.7 | — |
| apple | quicktime | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wwqg-4jcm-c5j4: Apple QuickTime before 7
ghsa_unreviewed·2022-05-17·CVSS 6.8
CVE-2015-5786 [MEDIUM] CWE-119 GHSA-wwqg-4jcm-c5j4: Apple QuickTime before 7
Apple QuickTime before 7.7.8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted file, a different vulnerability than CVE-2015-5785.
GHSA
GHSA-gjgq-j5px-2wv8: Apple QuickTime before 7
ghsa_unreviewed·2022-05-17·CVSS 6.8
CVE-2015-5785 [MEDIUM] CWE-119 GHSA-gjgq-j5px-2wv8: Apple QuickTime before 7
Apple QuickTime before 7.7.8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted file, a different vulnerability than CVE-2015-5786.
Apple
CVE-2015-5786: QuickTime 7.7.8
vendor_apple·CVSS 6.8
CVE-2015-5786 [MEDIUM] CVE-2015-5786: QuickTime 7.7.8
Apple Security Update: About the security content of QuickTime 7.7.8
Product: QuickTime
Version: 7.7.8
CVE: CVE-2015-5786
Component: CVE-ID
No detection rules found.
No public exploits indexed.
Talos
Talos Identifies Multiple Memory Corruption Issues in Quicktime
blogs_talos·2015-08-13·CVSS 6.8
[MEDIUM] Talos Identifies Multiple Memory Corruption Issues in Quicktime
## Talos Identifies Multiple Memory Corruption Issues in Quicktime
Update 2015-08-21 : This post has been updated to reflect an additional advisory released on August 20.
Talos, in conjunction with Apple’s security advisories issued on August 13 and August 20, has released six advisories for vulnerabilities that Talos found in Apple Quicktime. In accordance with our Vendor Vulnerability Reporting and Disclosure policy, these vulnerabilities have been reported to Apple and CERT. This post serves as a summary for the advisories being released in coordination with Apple and CERT.
Ryan Pentney and Richard Johnson of Talos are credited with the discovery of these vulnerabilities.
## Advisory Summary Several memory corruption vulnerabilities exist in Apple Quicktime and can manifest themselv
Talos
Talos Identifies Multiple Memory Corruption Issues in Quicktime
blogs_talos·2015-08-13·CVSS 6.8
[MEDIUM] Talos Identifies Multiple Memory Corruption Issues in Quicktime
Update 2015-08-21: This post has been updated to reflect an additional advisory released on August 20.
Talos, in conjunction with Apple’s security advisories issued on August 13 and August 20, has released six advisories for vulnerabilities that Talos found in Apple Quicktime. In accordance with our Vendor Vulnerability Reporting and Disclosure policy, these vulnerabilities have been reported to Apple and CERT. This post serves as a summary for the advisories being released in coordination with Apple and CERT.
Ryan Pentney and Richard Johnson of Talos are credited with the discovery of these vulnerabilities.
### Advisory Summary Several memory corruption vulnerabilities exist in Apple Quicktime and can manifest themselves due to improper handling of objects in memory. An adversary who c
2015-08-25
Published