First published: Fri May 12 2006(Updated: )
Multiple buffer overflows in Apple QuickTime before 7.1 allow remote attackers to execute arbitrary code via a crafted QuickTime movie (.MOV), as demonstrated via a large size for a udta Atom.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple QuickTime | <=7.0.4 | |
Apple QuickTime | =7.0 | |
Apple QuickTime | =7.0.1 | |
Apple QuickTime | =7.0.2 | |
Apple QuickTime | =7.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1460 is considered critical due to its potential for remote code execution.
To fix CVE-2006-1460, update Apple QuickTime to version 7.1 or later.
CVE-2006-1460 can be exploited through crafted QuickTime movie files that trigger buffer overflows.
CVE-2006-1460 affects multiple QuickTime versions including 7.0, 7.0.1, 7.0.2, and 7.0.3.
The impact of CVE-2006-1460 includes the potential for attackers to execute arbitrary code on affected systems.