Apple QuickTime Multiple Unspecified Code Execution Vulnerabilities
BID:22827
Info
Apple QuickTime Multiple Unspecified Code Execution Vulnerabilities
| Bugtraq ID: | 22827 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2007-0711 CVE-2007-0712 CVE-2007-0713 CVE-2007-0714 CVE-2007-0715 CVE-2007-0716 CVE-2007-0717 CVE-2007-0718 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 05 2007 12:00AM |
| Updated: | Mar 06 2007 09:05PM |
| Credit: | JJ Reyes, Mike Price of McAfee AVERT Labs, iotr Bania, Artur Ogloza (Czestochowa, Poland), Piotr Bania, Sowhat of Nevis Labs, and an anonymous researcher working with TippingPoint and the Zero Day Initiative are credited with the discovery of these issues. |
| Vulnerable: |
Apple QuickTime Player 7.1.4 Apple QuickTime Player 7.1.3 Apple QuickTime Player 7.1.2 Apple QuickTime Player 7.1.1 Apple QuickTime Player 7.0.4 Apple QuickTime Player 7.0.3 Apple QuickTime Player 7.0.2 Apple QuickTime Player 7.0.1 Apple QuickTime Player 7.0 Apple QuickTime Player 6.5.2 Apple QuickTime Player 6.5.1 Apple QuickTime Player 6.5 Apple QuickTime Player 6.1 Apple QuickTime Player 5.0.2 Apple QuickTime Player 7.1 Apple QuickTime Player 6 |
| Not Vulnerable: |
Apple QuickTime Player 7.1.5 |
Discussion
Apple QuickTime Multiple Unspecified Code Execution Vulnerabilities
Apple QuickTime is prone to multiple unspecified remote code-execution vulnerabilities including mulitple heap and stack-based buffer-overflow and integer-overflow issues.
These issues arise when the application handles specially crafted 3GP, MIDI, MOV, PICT, and QTIF files.
An attacker can exploit these issues to execute arbitrary code in the context of the user running the applicaiton. Successful attacks can result in the compromise of the applicaiton or can cause denial-of-service conditions.
Few details regarding these issues are currently available. Separate BIDs for each issue will be created as new information becomes available.
QuickTime versions prior to 7.1.5 are vulnerable.
Apple QuickTime is prone to multiple unspecified remote code-execution vulnerabilities including mulitple heap and stack-based buffer-overflow and integer-overflow issues.
These issues arise when the application handles specially crafted 3GP, MIDI, MOV, PICT, and QTIF files.
An attacker can exploit these issues to execute arbitrary code in the context of the user running the applicaiton. Successful attacks can result in the compromise of the applicaiton or can cause denial-of-service conditions.
Few details regarding these issues are currently available. Separate BIDs for each issue will be created as new information becomes available.
QuickTime versions prior to 7.1.5 are vulnerable.
Exploit / POC
Apple QuickTime Multiple Unspecified Code Execution Vulnerabilities
To exploit these issues, an attacker must entice a victim to open a malicious file with the affected application.
To exploit these issues, an attacker must entice a victim to open a malicious file with the affected application.
Solution / Fix
Apple QuickTime Multiple Unspecified Code Execution Vulnerabilities
Solution:
Apple has released advisory APPLE-SA-2007-03-05 and QuickTime 7.1.5 to address this issue. Please see the references for more information.
Solution:
Apple has released advisory APPLE-SA-2007-03-05 and QuickTime 7.1.5 to address this issue. Please see the references for more information.
References
Apple QuickTime Multiple Unspecified Code Execution Vulnerabilities
References:
References:
- Apple QuickTime Homepage (Apple)
- Quicktime Downloads Page (Apple)
- iDefense Security Advisory 03.05.07: Apple QuickTime Color Table ID Heap Corrupt (iDefense Labs)
- TA07-065A Apple Releases Security Updates for QuickTime (US-CERT)
- VU#313225 Vulnerability Note VU#313225 (US-CERT)
- VU#410993 Apple QuickTime contains integer overflow in QTIF file handling (US-CERT)
- VU#448745 Apple Quicktime fails to properly process specially crafted PICT files (US-CERT)
- VU#568689 Apple QuickTime 3GP integer overflow (US-CERT)
- VU#642433 Apple QuickTime QTIF stack buffer overflow (US-CERT)
- VU#822481 Apple Quicktime fails to properly process specially crafted MIDI files (US-CERT)
- VU#861817 Apple QuickTime UDTA atom integer overflow (US-CERT)
- VU#880561 Apple QuickTime movie heap buffer overflow vulnerability (US-CERT)