CVE Vulnerabilities

CVE-2006-4389

Published: Sep 12, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Apple QuickTime before 7.1.3 allows user-assisted remote attackers to execute arbitrary code via a crafted FlashPix (FPX) file, which triggers an exception that leads to an operation on an uninitialized object.

Affected Software

NameVendorStart VersionEnd Version
QuicktimeApple5.0.2 (including)5.0.2 (including)
QuicktimeApple6.0 (including)6.0 (including)
QuicktimeApple6.1 (including)6.1 (including)
QuicktimeApple6.5 (including)6.5 (including)
QuicktimeApple6.5.1 (including)6.5.1 (including)
QuicktimeApple6.5.2 (including)6.5.2 (including)
QuicktimeApple7.0 (including)7.0 (including)
QuicktimeApple7.0.1 (including)7.0.1 (including)
QuicktimeApple7.0.2 (including)7.0.2 (including)
QuicktimeApple7.0.3 (including)7.0.3 (including)
QuicktimeApple7.0.4 (including)7.0.4 (including)
QuicktimeApple7.1 (including)7.1 (including)
QuicktimeApple7.1.1 (including)7.1.1 (including)
QuicktimeApple7.1.2 (including)7.1.2 (including)

References