Lucene search

K
cveMitreCVE-2008-3629
HistorySep 11, 2008 - 1:13 a.m.

CVE-2008-3629

2008-09-1101:13:09
CWE-399
mitre
web.nvd.nist.gov
27
apple
quicktime
denial of service
pict image
cve-2008-3629
nvd

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6

Confidence

Low

EPSS

0.02

Percentile

89.1%

Apple QuickTime before 7.5.5 allows remote attackers to cause a denial of service (application crash) via a crafted PICT image that triggers an out-of-bounds read.

Affected configurations

Nvd
Node
applequicktimeRange≀7.5
OR
applequicktimeMatch7.0
OR
applequicktimeMatch7.0.1
OR
applequicktimeMatch7.0.2
OR
applequicktimeMatch7.0.3
OR
applequicktimeMatch7.0.4
OR
applequicktimeMatch7.1
OR
applequicktimeMatch7.1.1
OR
applequicktimeMatch7.1.2
OR
applequicktimeMatch7.1.3
OR
applequicktimeMatch7.1.4
OR
applequicktimeMatch7.1.5
OR
applequicktimeMatch7.1.6
OR
applequicktimeMatch7.2
OR
applequicktimeMatch7.3
OR
applequicktimeMatch7.3.1
OR
applequicktimeMatch7.3.1.70
OR
applequicktimeMatch7.4
OR
applequicktimeMatch7.4.1
OR
applequicktimeMatch7.4.5
AND
applemac_os_xMatch10.3.9
OR
applemac_os_xMatch10.4.9
OR
applemac_os_xMatch10.4.10
OR
applemac_os_xMatch10.4.11
OR
applemac_os_xMatch10.5
OR
applemac_os_xMatch10.5.1
OR
applemac_os_xMatch10.5.2
OR
applemac_os_xMatch10.5.3
OR
applemac_os_xMatch10.5.4
OR
applemac_os_x_serverMatch10.3.9
OR
applemac_os_x_serverMatch10.4.9
OR
applemac_os_x_serverMatch10.4.10
OR
applemac_os_x_serverMatch10.4.11
OR
applemac_os_x_serverMatch10.5
OR
microsoftwindows-ntMatchxpsp3
OR
microsoftwindows_vistaMatch-
OR
microsoftwindows_xpMatch-sp2
VendorProductVersionCPE
applequicktime*cpe:2.3:a:apple:quicktime:*:*:*:*:*:*:*:*
applequicktime7.0cpe:2.3:a:apple:quicktime:7.0:*:*:*:*:*:*:*
applequicktime7.0.1cpe:2.3:a:apple:quicktime:7.0.1:*:*:*:*:*:*:*
applequicktime7.0.2cpe:2.3:a:apple:quicktime:7.0.2:*:*:*:*:*:*:*
applequicktime7.0.3cpe:2.3:a:apple:quicktime:7.0.3:*:*:*:*:*:*:*
applequicktime7.0.4cpe:2.3:a:apple:quicktime:7.0.4:*:*:*:*:*:*:*
applequicktime7.1cpe:2.3:a:apple:quicktime:7.1:*:*:*:*:*:*:*
applequicktime7.1.1cpe:2.3:a:apple:quicktime:7.1.1:*:*:*:*:*:*:*
applequicktime7.1.2cpe:2.3:a:apple:quicktime:7.1.2:*:*:*:*:*:*:*
applequicktime7.1.3cpe:2.3:a:apple:quicktime:7.1.3:*:*:*:*:*:*:*
Rows per page:
1-10 of 371

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6

Confidence

Low

EPSS

0.02

Percentile

89.1%