CVE-2002-0252
Buffer overflow in Apple QuickTime Player 5.01 and 5.02 allows remote web servers to execute arbitrary code via a response containing a long Content-Type MIME header.
- Affected products
- Quicktime Player
- Apple Quicktime
- = 5.0.1, 5.0.2
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 10.5% (95th percentile)
- NVD status
- Modified
- Published
- 2002-05-03
CVE-2002-0252 at NVD
6 known exploits for CVE-2002-0252
Proof-of-concept code and exploit modules indexed by Sploitus
Apple QuickTime 7.2/7.3 - RSTP Response Universal Exploit (win/osx)
aquick-winosx.txt
Apple QuickTime 7.2/7.3 RSTP Response Universal Exploit (win/osx)
Apple QuickTime 7.27.3 (OSXWindows) - RSTP Response Universal
Apple QuickTime 7.2/7.3 (OSX/Windows) - RSTP Response Universal
Apple QuickTime 5.0 - Content-Type Remote Buffer Overflow