CVE-2015-7091
Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file, a different vulnerability than CVE-2015-7085, CVE-2015-7086, CVE-2015-7087, CVE-2015-7088, CVE-2015-7089, CVE-2015-7090, CVE-2015-7092, and CVE-2015-7117.
- Affected products
- Quicktime Player, Apple Quicktime
- Apple Quicktime
- ≤ 7.7.8
- CVSS 2.0
- 6.8 MEDIUM
- CVSS 3.1
- 6.6 MEDIUM
- EPSS
- 1.4% (70th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2016-01-09
CVE-2015-7091 at NVD
1 known exploit for CVE-2015-7091
Proof-of-concept code and exploit modules indexed by Sploitus