CVE-2002-0252: Buffer Overflow
Published May 3, 2002
·Updated
Buffer overflow in Apple QuickTime Player 5.01 and 5.02 allows remote web servers to execute arbitrary code via a response containing a long Content-Type MIME header.
Affected Software
2 affected components
QuickTime Player=5.0.2
QuickTime Player=5.0.1
Remediation
Patch Available
Event History
May 3, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0252?
CVE-2002-0252 is considered a critical vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2002-0252?
To fix CVE-2002-0252, users should update their Apple QuickTime Player to the latest version provided by Apple.
3
What versions of Apple QuickTime are affected by CVE-2002-0252?
CVE-2002-0252 affects Apple QuickTime versions 5.0.1 and 5.0.2.
4
What type of attack is possible due to CVE-2002-0252?
CVE-2002-0252 allows remote attackers to execute arbitrary code on the victim's system.
5
Can CVE-2002-0252 be exploited without user interaction?
Yes, CVE-2002-0252 can be exploited by sending a malicious response from a web server without any user interaction.