Lucene search

K
cve[email protected]CVE-2013-1018
HistoryMay 24, 2013 - 4:43 p.m.

CVE-2013-1018

2013-05-2416:43:58
CWE-119
web.nvd.nist.gov
24
cve-2013-1018
buffer overflow
apple quicktime
remote attackers
arbitrary code execution
denial of service
crafted movie file
h.264 encoding
nvd

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.8 High

AI Score

Confidence

High

0.027 Low

EPSS

Percentile

90.5%

Buffer overflow in Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with H.264 encoding.

Affected configurations

NVD
Node
applequicktimeRange7.7.3
OR
applequicktimeMatch3.0
OR
applequicktimeMatch4.1.2
OR
applequicktimeMatch5.0
OR
applequicktimeMatch5.0.1
OR
applequicktimeMatch5.0.2
OR
applequicktimeMatch6.0
OR
applequicktimeMatch6.0.0
OR
applequicktimeMatch6.0.1
OR
applequicktimeMatch6.0.2
OR
applequicktimeMatch6.1
OR
applequicktimeMatch6.1.0
OR
applequicktimeMatch6.1.1
OR
applequicktimeMatch6.2.0
OR
applequicktimeMatch6.3.0
OR
applequicktimeMatch6.4.0
OR
applequicktimeMatch6.5
OR
applequicktimeMatch6.5.0
OR
applequicktimeMatch6.5.1
OR
applequicktimeMatch6.5.2
OR
applequicktimeMatch7.0.0
OR
applequicktimeMatch7.0.1
OR
applequicktimeMatch7.0.2
OR
applequicktimeMatch7.0.3
OR
applequicktimeMatch7.0.4
OR
applequicktimeMatch7.1.0
OR
applequicktimeMatch7.1.1
OR
applequicktimeMatch7.1.2
OR
applequicktimeMatch7.1.3
OR
applequicktimeMatch7.1.4
OR
applequicktimeMatch7.1.5
OR
applequicktimeMatch7.1.6
OR
applequicktimeMatch7.2.0
OR
applequicktimeMatch7.2.1
OR
applequicktimeMatch7.3.0
OR
applequicktimeMatch7.3.1
OR
applequicktimeMatch7.4.0
OR
applequicktimeMatch7.4.1
OR
applequicktimeMatch7.4.5
OR
applequicktimeMatch7.5.0
OR
applequicktimeMatch7.5.5
OR
applequicktimeMatch7.6.0
OR
applequicktimeMatch7.6.1
OR
applequicktimeMatch7.6.2
OR
applequicktimeMatch7.6.5
OR
applequicktimeMatch7.6.6
OR
applequicktimeMatch7.6.7
OR
applequicktimeMatch7.6.8
OR
applequicktimeMatch7.6.9
OR
applequicktimeMatch7.7.0
OR
applequicktimeMatch7.7.1
OR
applequicktimeMatch7.7.2
AND
microsoftwindows_7
OR
microsoftwindows_vista
OR
microsoftwindows_xpsp2

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.8 High

AI Score

Confidence

High

0.027 Low

EPSS

Percentile

90.5%