Apple QuickTime Multiple Flaws Let Remote Users Execute Arbitrary Code
|
|
SecurityTracker Alert ID: 1026251 |
|
SecurityTracker URL: http://securitytracker.com/id/1026251
|
|
CVE Reference:
CVE-2011-3247, CVE-2011-3248, CVE-2011-3249, CVE-2011-3250, CVE-2011-3251
(Links to External Site)
|
Date: Oct 27 2011
|
Impact:
Execution of arbitrary code via network, User access via network
|
Fix Available: Yes Vendor Confirmed: Yes
|
Version(s): prior to 7.7.1
|
Description:
Several vulnerabilities were reported in QuickTime. A remote user can cause arbitrary code to be executed on the target user's system.
A remote user can create specially crafted content that, when loaded by the target user, will execute arbitrary code on the target user's system. The code will run with the privileges of the target user. Mac OS X is not affected.
A specially crafted PICT file can trigger an integer overflow [CVE-2011-3247]. Luigi Auriemma reported this vulnerability via TippingPoint's Zero Day Initiative.
A specially crafted movie file can trigger a flaw in the handling of font tables [CVE-2011-3248]. Luigi Auriemma reported this vulnerability via TippingPoint's Zero Day Initiative.
A specially crafted FLC encoded movie file can trigger a buffer overflow [CVE-2011-3249]. Matt 'j00ru' Jurczyk reported this vulnerability via TippingPoint's Zero Day Initiative.
A specially crafted movie file can trigger an integer overflow in the handling of JPEG2000 encoded movie files [CVE-2011-3250]. Luigi Auriemma reported this vulnerability via TippingPoint's Zero Day Initiative.
A specially crafted movie file can trigger a memory corruption error in the handling of TKHD atoms in QuickTime movie files [CVE-2011-3251]. Damian Put reported this vulnerability via TippingPoint's Zero Day Initiative.
|
Impact:
A remote user can create a file that, when loaded by the target user, will execute arbitrary code on the target user's system.
|
Solution:
The vendor has issued a fix (7.7.1).
The vendor's advisory is available at:
http://support.apple.com/kb/HT5016
|
Vendor URL: support.apple.com/kb/HT5016 (Links to External Site)
|
Cause:
Access control error, Boundary error
|
Underlying OS:
Windows (Any)
|
|
Message History:
None.
|
Source Message Contents
|
Date: Thu, 27 Oct 2011 18:36:20 +0000
Subject: Apple QuickTime
|
http://support.apple.com/kb/HT5016
QuickTime 7.7.1
QuickTime
Available for: Windows 7, Vista, XP SP2 or later
Impact: Viewing a maliciously crafted PICT file may lead to an unexpected application termination or arbitrary code execution
Description: An integer overflow issue existed in the handling of PICT files. This issue does not affect Mac OS X systems.
CVE-ID
CVE-2011-3247 : Luigi Auriemma working with TippingPoint's Zero Day Initiative
QuickTime
Available for: Windows 7, Vista, XP SP2 or later
Impact: Viewing a maliciously crafted movie file may lead to an unexpected application termination or arbitrary code execution
Description: A signedness issue existed in the handling of font tables embedded in QuickTime movie files.
CVE-ID
CVE-2011-3248 : Luigi Auriemma working with TippingPoint's Zero Day Initiative
QuickTime
Available for: Windows 7, Vista, XP SP2 or later
Impact: Viewing a maliciously crafted movie file may lead to an unexpected application termination or arbitrary code execution
Description: A buffer overflow issue existed in the handling of FLC encoded movie files.
CVE-ID
CVE-2011-3249 : Matt 'j00ru' Jurczyk working with TippingPoint's Zero Day Initiative
QuickTime
Available for: Windows 7, Vista, XP SP2 or later
Impact: Viewing a maliciously crafted movie file may lead to an unexpected application termination or arbitrary code execution
Description: An integer overflow issue existed in the handling of JPEG2000 encoded movie files.
CVE-ID
CVE-2011-3250 : Luigi Auriemma working with TippingPoint's Zero Day Initiative
QuickTime
Available for: Windows 7, Vista, XP SP2 or later
Impact: Viewing a maliciously crafted movie file may lead to an unexpected application termination or arbitrary code execution
Description: A memory corruption issue existed in the handling of TKHD atoms in QuickTime movie files. This issue does not affect Mac OS X systems.
CVE-ID
CVE-2011-3251 : Damian Put working with TippingPoint's Zero Day Initiative
|
|