CVE-2004-0431
Last modified
CVE-2004-0431 is a vulnerability of currently unknown severity. Integer overflow in Apple QuickTime (QuickTime.qts) before 6.5.1 allows attackers to execute arbitrary code via a large "number of entries" field in the sample-to-chunk table data for a .mov movie file, which leads to a heap-based buffer overflow.. EPSS estimates a 3.24% chance of exploitation in the next 30 days.
Description
Integer overflow in Apple QuickTime (QuickTime.qts) before 6.5.1 allows attackers to execute arbitrary code via a large "number of entries" field in the sample-to-chunk table data for a .mov movie file, which leads to a heap-based buffer overflow.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Apple | Quicktime | <= 6.5 |
References
- http://www.kb.cert.org/vuls/id/782958US Government Resource
- http://www.kb.cert.org/vuls/id/782958US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2004-0431?
How severe is CVE-2004-0431?
How do I fix CVE-2004-0431?
Are you affected by CVE-2004-0431?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
