CVE Vulnerabilities

CVE-2007-2394

Published: Jul 15, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Integer overflow in Apple Quicktime before 7.2 on Mac OS X 10.3.9 and 10.4.9 allows user-assisted remote attackers to execute arbitrary code via crafted (1) title and (2) author fields in an SMIL file, related to improper calculations for memory allocation.

Affected Software

NameVendorStart VersionEnd Version
Mac_os_xApple10.3.9 (including)10.3.9 (including)
Mac_os_xApple10.4.9 (including)10.4.9 (including)

References