Lucene search

K
cveMitreCVE-2009-2799
HistorySep 10, 2009 - 9:30 p.m.

CVE-2009-2799

2009-09-1021:30:01
CWE-119
mitre
web.nvd.nist.gov
31
cve-2009-2799
apple quicktime
buffer overflow
remote code execution
denial of service
h.264
movie file
security vulnerability

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

High

EPSS

0.593

Percentile

97.8%

Heap-based buffer overflow in Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted H.264 movie file.

Affected configurations

Nvd
Node
applequicktimeRange7.6.2
OR
applequicktimeMatch-
OR
applequicktimeMatch3.0
OR
applequicktimeMatch4.1.2
OR
applequicktimeMatch4.1.2-mac
OR
applequicktimeMatch4.1.2-windows
OR
applequicktimeMatch5.0
OR
applequicktimeMatch5.0.1
OR
applequicktimeMatch5.0.1-mac
OR
applequicktimeMatch5.0.1-windows
OR
applequicktimeMatch5.0.2
OR
applequicktimeMatch5.0.2-mac
OR
applequicktimeMatch5.0.2-windows
OR
applequicktimeMatch6.0
OR
applequicktimeMatch6.0-windows
OR
applequicktimeMatch6.0.0
OR
applequicktimeMatch6.0.0-mac
OR
applequicktimeMatch6.0.0-windows
OR
applequicktimeMatch6.0.1
OR
applequicktimeMatch6.0.1-mac
OR
applequicktimeMatch6.0.1-windows
OR
applequicktimeMatch6.0.2
OR
applequicktimeMatch6.0.2-mac
OR
applequicktimeMatch6.0.2-windows
OR
applequicktimeMatch6.1
OR
applequicktimeMatch6.1.0
OR
applequicktimeMatch6.1.0-mac
OR
applequicktimeMatch6.1.0-windows
OR
applequicktimeMatch6.1.1
OR
applequicktimeMatch6.1.1-mac
OR
applequicktimeMatch6.1.1-windows
OR
applequicktimeMatch6.2.0
OR
applequicktimeMatch6.2.0-mac
OR
applequicktimeMatch6.2.0-windows
OR
applequicktimeMatch6.3.0
OR
applequicktimeMatch6.3.0-mac
OR
applequicktimeMatch6.3.0-windows
OR
applequicktimeMatch6.4.0
OR
applequicktimeMatch6.4.0-mac
OR
applequicktimeMatch6.4.0-windows
OR
applequicktimeMatch6.5
OR
applequicktimeMatch6.5.0
OR
applequicktimeMatch6.5.0-mac
OR
applequicktimeMatch6.5.0-windows
OR
applequicktimeMatch6.5.1
OR
applequicktimeMatch6.5.1-mac
OR
applequicktimeMatch6.5.1-windows
OR
applequicktimeMatch6.5.2
OR
applequicktimeMatch6.5.2-mac
OR
applequicktimeMatch6.5.2-windows
OR
applequicktimeMatch7.0
OR
applequicktimeMatch7.0windows
OR
applequicktimeMatch7.0-windows
OR
applequicktimeMatch7.0.0
OR
applequicktimeMatch7.0.0-mac
OR
applequicktimeMatch7.0.0-windows
OR
applequicktimeMatch7.0.1
OR
applequicktimeMatch7.0.1windows
OR
applequicktimeMatch7.0.1-mac
OR
applequicktimeMatch7.0.1-windows
OR
applequicktimeMatch7.0.2
OR
applequicktimeMatch7.0.2windows
OR
applequicktimeMatch7.0.2-mac
OR
applequicktimeMatch7.0.2-windows
OR
applequicktimeMatch7.0.3
OR
applequicktimeMatch7.0.3-mac
OR
applequicktimeMatch7.0.3-windows
OR
applequicktimeMatch7.0.4
OR
applequicktimeMatch7.0.4-mac
OR
applequicktimeMatch7.0.4-windows
OR
applequicktimeMatch7.1
OR
applequicktimeMatch7.1.0
OR
applequicktimeMatch7.1.0-mac
OR
applequicktimeMatch7.1.0-windows
OR
applequicktimeMatch7.1.1
OR
applequicktimeMatch7.1.1-mac
OR
applequicktimeMatch7.1.1-windows
OR
applequicktimeMatch7.1.2
OR
applequicktimeMatch7.1.2-mac
OR
applequicktimeMatch7.1.2-windows
OR
applequicktimeMatch7.1.3
OR
applequicktimeMatch7.1.3-mac
OR
applequicktimeMatch7.1.3-windows
OR
applequicktimeMatch7.1.4
OR
applequicktimeMatch7.1.4-mac
OR
applequicktimeMatch7.1.4-windows
OR
applequicktimeMatch7.1.5
OR
applequicktimeMatch7.1.5-mac
OR
applequicktimeMatch7.1.5-windows
OR
applequicktimeMatch7.1.6
OR
applequicktimeMatch7.1.6-mac
OR
applequicktimeMatch7.1.6-windows
OR
applequicktimeMatch7.2
OR
applequicktimeMatch7.2.0
OR
applequicktimeMatch7.2.0-mac
OR
applequicktimeMatch7.2.0-windows
OR
applequicktimeMatch7.2.1
OR
applequicktimeMatch7.2.1-mac
OR
applequicktimeMatch7.2.1-windows
OR
applequicktimeMatch7.3
OR
applequicktimeMatch7.3.0
OR
applequicktimeMatch7.3.0-mac
OR
applequicktimeMatch7.3.0-windows
OR
applequicktimeMatch7.3.1
OR
applequicktimeMatch7.3.1-mac
OR
applequicktimeMatch7.3.1-windows
OR
applequicktimeMatch7.3.1.70
OR
applequicktimeMatch7.4
OR
applequicktimeMatch7.4.0
OR
applequicktimeMatch7.4.0-mac
OR
applequicktimeMatch7.4.0-windows
OR
applequicktimeMatch7.4.1
OR
applequicktimeMatch7.4.1-mac
OR
applequicktimeMatch7.4.1-windows
OR
applequicktimeMatch7.4.4
OR
applequicktimeMatch7.4.5
OR
applequicktimeMatch7.4.5-mac
OR
applequicktimeMatch7.4.5-windows
OR
applequicktimeMatch7.5
OR
applequicktimeMatch7.5.0
OR
applequicktimeMatch7.5.0-mac
OR
applequicktimeMatch7.5.0-windows
OR
applequicktimeMatch7.5.5
OR
applequicktimeMatch7.5.5-mac
OR
applequicktimeMatch7.5.5-windows
OR
applequicktimeMatch7.6.0
OR
applequicktimeMatch7.6.0-mac
OR
applequicktimeMatch7.6.0-windows
OR
applequicktimeMatch7.6.1
OR
applequicktimeMatch7.6.1-mac
OR
applequicktimeMatch7.6.1-windows
VendorProductVersionCPE
applequicktime*cpe:2.3:a:apple:quicktime:*:*:*:*:*:*:*:*
applequicktime-cpe:2.3:a:apple:quicktime:-:*:*:*:*:*:*:*
applequicktime3.0cpe:2.3:a:apple:quicktime:3.0:*:*:*:*:*:*:*
applequicktime4.1.2cpe:2.3:a:apple:quicktime:4.1.2:*:*:*:*:*:*:*
applequicktime4.1.2cpe:2.3:a:apple:quicktime:4.1.2:-:mac:*:*:*:*:*
applequicktime4.1.2cpe:2.3:a:apple:quicktime:4.1.2:-:windows:*:*:*:*:*
applequicktime5.0cpe:2.3:a:apple:quicktime:5.0:*:*:*:*:*:*:*
applequicktime5.0.1cpe:2.3:a:apple:quicktime:5.0.1:*:*:*:*:*:*:*
applequicktime5.0.1cpe:2.3:a:apple:quicktime:5.0.1:-:mac:*:*:*:*:*
applequicktime5.0.1cpe:2.3:a:apple:quicktime:5.0.1:-:windows:*:*:*:*:*
Rows per page:
1-10 of 1311

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

High

EPSS

0.593

Percentile

97.8%