CVE-2011-0257
Integer signedness error in Apple QuickTime before 7.7 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PnSize opcode in a PICT file that triggers a stack-based buffer overflow.
- Affected products
- Apple Quicktime
- Apple Quicktime
- ≤ 7.6.9, 7.0.0, 7.0.1, 7.0.2, 7.0.3, 7.0.4, 7.1.0, 7.1.1, 7.1.2, 7.1.3, 7.1.4, 7.1.5, 7.1.6, 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.3.1.70, 7.4.0, 7.4.1, 7.4.5, 7.5.0, 7.5.5, 7.6.0, 7.6.1, 7.6.2, 7.6.5, 7.6.6, 7.6.7, 7.6.8, 7.66.71.0, 7.67.75.0
- Fix
- Available
- CVSS 2.0
- 9.3 HIGH
- EPSS
- 60.1% (99th percentile)
- Weakness
- CWE-189
- NVD status
- Modified
- Published
- 2011-08-15
CVE-2011-0257 at NVD
14 known exploits for CVE-2011-0257
Proof-of-concept code and exploit modules indexed by Sploitus
Apple QuickTime PICT PnSize Buffer Overflow
QQPLAYER Player 3.2 - PICT PnSize Buffer Overflow Windows (ASLR + DEP Bypass) (Metasploit)
QQPLAYER PICT PnSize Buffer Overflow
QQPLAYER PICT PnSize Buffer Overflow WIN7 DEP_ASLR BYPASS
QQPLAYER PICT PnSize Buffer Overflow WIN7 DEP_ASLR BYPASS
Apple QuickTime PICT PnSize Buffer Overflow
Apple QuickTime - PICT PnSize Buffer Overflow (Metasploit)
Apple QuickTime PICT PnSize Buffer Overflow
Apple QuickTime PICT PnSize Buffer Overflow
QuickTime PICT PnSize Stack Overflow
QuickTime PICT PnSize Stack Overflow
QuickTime PICT PnSize Stack Overflow
QuickTime PICT PnSize Stack Overflow
Apple QuickTime PICT文件栈缓冲区溢出漏洞