Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap-based buffer overflow in Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FlashPix file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple QuickTime拒绝服务漏洞
Vulnerability Description
Apple QuickTime是一款非常流行的多媒体播放器。 QuickTime的7.6.4之前版本在解析FlashPix(.fpx)文件头的SectorShift和cSectFat字段时应用程序会将两个用户控制的32位值相乘然后用于内存分配。如果乘法运算的结果大于32位,就会分配不充分的堆块。之后应用程序将文件数据直接拷贝到了这个缓冲区,这可能会触发溢出,导致拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A