Apple QuickTime 'STSZ' Atoms Memory Corruption Vulnerability
BID:31546
Info
Apple QuickTime 'STSZ' Atoms Memory Corruption Vulnerability
| Bugtraq ID: | 31546 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-3626 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 09 2008 12:00AM |
| Updated: | Oct 03 2008 04:18PM |
| Credit: | An anonymous researcher working with TippingPoint's Zero Day Initiative |
| Vulnerable: |
Apple TV 2.1 Apple TV 2.0 Apple TV 1.1 Apple TV 1.0 Apple QuickTime Player 7.4.5 Apple QuickTime Player 7.4.1 Apple QuickTime Player 7.3.1 .70 Apple QuickTime Player 7.3.1 Apple QuickTime Player 7.1.6 Apple QuickTime Player 7.1.5 Apple QuickTime Player 7.1.4 Apple QuickTime Player 7.1.3 Apple QuickTime Player 7.1.2 Apple QuickTime Player 7.1.1 Apple QuickTime Player 7.0.4 Apple QuickTime Player 7.0.3 Apple QuickTime Player 7.0.2 Apple QuickTime Player 7.0.1 Apple QuickTime Player 7.0 Apple QuickTime Player 7.5 Apple QuickTime Player 7.4 Apple QuickTime Player 7.4 Apple QuickTime Player 7.3 Apple QuickTime Player 7.2 Apple QuickTime Player 7.1 |
| Not Vulnerable: |
Apple TV 2.2 Apple QuickTime Player 7.5.5 |
Discussion
Apple QuickTime 'STSZ' Atoms Memory Corruption Vulnerability
Apple QuickTime is prone to a memory-corruption vulnerability caused by an error in handling specially crafted movie files with 'STSZ' atoms.
Successful exploits may allow remote attackers to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will likely cause denial-of-service conditions.
This issue affects versions prior to QuickTime 7.5.5 for OS X 10.4 and 10.5, for Microsoft Windows Vista, and for Windows XP SP2 and SP3. The issue also affects Apple TV 1.0 up to and including 2.1.
NOTE: This issue was previously described in BID 31086 (Apple QuickTime Movie/PICT/QTVR Multiple Remote Vulnerabilities) but has been given its own record to better document the vulnerability.
Apple QuickTime is prone to a memory-corruption vulnerability caused by an error in handling specially crafted movie files with 'STSZ' atoms.
Successful exploits may allow remote attackers to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will likely cause denial-of-service conditions.
This issue affects versions prior to QuickTime 7.5.5 for OS X 10.4 and 10.5, for Microsoft Windows Vista, and for Windows XP SP2 and SP3. The issue also affects Apple TV 1.0 up to and including 2.1.
NOTE: This issue was previously described in BID 31086 (Apple QuickTime Movie/PICT/QTVR Multiple Remote Vulnerabilities) but has been given its own record to better document the vulnerability.
Exploit / POC
Apple QuickTime 'STSZ' Atoms Memory Corruption Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Apple QuickTime 'STSZ' Atoms Memory Corruption Vulnerability
Solution:
The vendor has released advisories and fixes. Please see the references for more information.
Apple QuickTime Player 7.5
Solution:
The vendor has released advisories and fixes. Please see the references for more information.
Apple QuickTime Player 7.5
-
Apple QuickTime755_Leopard.dmg
http://www.apple.com/quicktime/download/ -
Apple QuickTime755_Tiger.dmg
http://www.apple.com/quicktime/download/ -
Apple QuickTimeInstaller.exe
http://www.apple.com/quicktime/download/
References
Apple QuickTime 'STSZ' Atoms Memory Corruption Vulnerability
References:
References: