CVE-2006-1458: Integer Overflow
Published May 12, 2006
·Updated
Integer overflow in Apple QuickTime Player before 7.1 allows remote attackers to execute arbitrary code via a crafted JPEG image.
Affected Software
2 affected components
QuickTime Player=7.0.3
QuickTime Player=7.0.4
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
May 12, 2006
CVE Published
08:06 PM
May 13, 2006
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-1458?
The severity of CVE-2006-1458 is classified as critical due to its potential to allow remote code execution.
2
How does CVE-2006-1458 affect Apple QuickTime Player?
CVE-2006-1458 affects Apple QuickTime Player by exploiting an integer overflow vulnerability that allows remote attackers to execute arbitrary code.
3
How do I fix CVE-2006-1458?
To fix CVE-2006-1458, update Apple QuickTime Player to version 7.1 or later.
4
What versions of QuickTime are affected by CVE-2006-1458?
Apple QuickTime versions 7.0.3 and 7.0.4 are affected by CVE-2006-1458.
5
What kind of attacks can be executed through CVE-2006-1458?
CVE-2006-1458 can be exploited to execute arbitrary code on the user's system through a specially crafted JPEG image.