Apple QuickTime 'PICT' Image 'PixData' Structures Handling Heap Overflow Vulnerability
BID:29649
Info
Apple QuickTime 'PICT' Image 'PixData' Structures Handling Heap Overflow Vulnerability
| Bugtraq ID: | 29649 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-1581 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 09 2008 12:00AM |
| Updated: | Jun 11 2008 07:12PM |
| Credit: | Dyon Balding of Secunia Research |
| Vulnerable: |
Apple QuickTime Player 7.4.5 Apple QuickTime Player 7.4.1 Apple QuickTime Player 7.3.1 .70 Apple QuickTime Player 7.3.1 Apple QuickTime Player 7.1.6 Apple QuickTime Player 7.1.5 Apple QuickTime Player 7.1.4 Apple QuickTime Player 7.1.3 Apple QuickTime Player 7.1.2 Apple QuickTime Player 7.1.1 Apple QuickTime Player 7.0.4 Apple QuickTime Player 7.0.3 Apple QuickTime Player 7.0.2 Apple QuickTime Player 7.0.1 Apple QuickTime Player 7.0 Apple QuickTime Player 7.4 Apple QuickTime Player 7.4 Apple QuickTime Player 7.3 Apple QuickTime Player 7.2 Apple QuickTime Player 7.1 |
| Not Vulnerable: |
Apple QuickTime Player 7.5 |
Discussion
Apple QuickTime 'PICT' Image 'PixData' Structures Handling Heap Overflow Vulnerability
QuickTime is prone to a heap-based buffer-overflow vulnerability because the application fails to perform adequate boundary checks when handling 'PixData' structures in a 'PICT' image file.
An attacker can exploit this issue to execute arbitrary within the context of the affected application. Failed exploit attempts will result in a denial-of-service vulnerability.
Versions prior to QuickTime 7.5 for Windows XP and Vista are vulnerable.
NOTE: This issue was previously covered in BID 29619 (Apple QuickTime Multiple Arbitrary Code Execution Vulnerabilities) but has been given its own record to better document the vulnerability.
QuickTime is prone to a heap-based buffer-overflow vulnerability because the application fails to perform adequate boundary checks when handling 'PixData' structures in a 'PICT' image file.
An attacker can exploit this issue to execute arbitrary within the context of the affected application. Failed exploit attempts will result in a denial-of-service vulnerability.
Versions prior to QuickTime 7.5 for Windows XP and Vista are vulnerable.
NOTE: This issue was previously covered in BID 29619 (Apple QuickTime Multiple Arbitrary Code Execution Vulnerabilities) but has been given its own record to better document the vulnerability.
Exploit / POC
Apple QuickTime 'PICT' Image 'PixData' Structures Handling Heap Overflow Vulnerability
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Apple QuickTime 'PICT' Image 'PixData' Structures Handling Heap Overflow Vulnerability
Solution:
Apple has released QuickTime 7.5 to address this issue. Please see the references for more information.
Solution:
Apple has released QuickTime 7.5 to address this issue. Please see the references for more information.
References
Apple QuickTime 'PICT' Image 'PixData' Structures Handling Heap Overflow Vulnerability
References:
References:
- Apple QuickTime Homepage (Apple)
- Secunia Research: Apple QuickTime PICT Image Parsing Buffer Overflow (Secunia Research
) - Secunia Research: Apple QuickTime PICT Image Parsing Buffer Overflow (Secunia Research)