Integer overflow in Apple QuickTime before 7.5.5 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT image, which triggers heap corruption.
Vector
NETWORK
Complexity
MEDIUM
Authentication
NONE
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL
Apple Quicktime 7.4.5
Apple Quicktime 7.4.1
Apple Quicktime 7.4
Apple Quicktime 7.3.1.70
Apple Quicktime 7.3.1
Apple Quicktime 7.3
Apple Quicktime 7.2
Apple Quicktime 7.1.6
Apple Quicktime 7.1.5
Apple Quicktime 7.1.4
Apple Quicktime 7.1.3
Apple Quicktime 7.1.2
Apple Quicktime 7.1.1
Apple Quicktime 7.0.4
Apple Quicktime 7.1
Apple Quicktime 7.0.3
Apple Quicktime 7.0.2
Apple Quicktime 7.0.1
Apple Quicktime 7.0
Apple Quicktime 7.5 (not an official CPE)