Apple.QuickTime.crgn.Atom.Parsing.Heap.Overflow

description-logoDescription

This indicates an attack attempt against a heap-based buffer-overflow vulnerability in Apple QuickTime on Windows.
The vulnerability is due to the software's inability to handle malformed Clipping Region (CRGN) atom types in a QuickTime movie file. A remote attacker may exploit this by sending a specially crafted movie file.

affected-products-logoAffected Products

Apple QuickTime before 7.6.2

Impact logoImpact

System compromise or denial of service.

recomended-action-logoRecommended Actions

Please refer to the vendor's web site for updates or patches:
http://lists.apple.com/archives/security-announce/2009/Jun/msg00000.html

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)