CVE Vulnerabilities

CVE-2007-2396

Published: Jul 15, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The JDirect support in QuickTime for Java in Apple Quicktime before 7.2 exposes certain dangerous interfaces, which allows remote attackers to execute arbitrary code via crafted Java applets.

Affected Software

NameVendorStart VersionEnd Version
QuicktimeApple- (including)- (including)
QuicktimeApple7.0 (including)7.0 (including)
QuicktimeApple7.0.1 (including)7.0.1 (including)
QuicktimeApple7.0.2 (including)7.0.2 (including)
QuicktimeApple7.0.3 (including)7.0.3 (including)
QuicktimeApple7.0.4 (including)7.0.4 (including)
QuicktimeApple7.1 (including)7.1 (including)
QuicktimeApple7.1.1 (including)7.1.1 (including)
QuicktimeApple7.1.2 (including)7.1.2 (including)
QuicktimeApple7.1.3 (including)7.1.3 (including)
QuicktimeApple7.1.4 (including)7.1.4 (including)
QuicktimeApple7.1.5 (including)7.1.5 (including)

References