First published: Tue Apr 29 2008(Updated: )
Unspecified vulnerability in Apple QuickTime Player on Windows XP SP2 and Vista SP1 allows remote attackers to execute arbitrary code via a crafted QuickTime media file. NOTE: as of 20080429, the only disclosure is a vague pre-advisory with no actionable information. However, because it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows Vista | =sp1 | |
Microsoft Windows XP | =sp2 | |
Apple QuickTime |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-2010 is considered a critical vulnerability due to the potential for remote code execution.
CVE-2008-2010 allows remote attackers to execute arbitrary code on affected systems through crafted QuickTime media files.
CVE-2008-2010 affects unspecified versions of Apple QuickTime on Windows platforms.
To mitigate risks from CVE-2008-2010, users should update to the latest version of Apple QuickTime or uninstall it if not needed.
As of now, there are no specific patches available for CVE-2008-2010 due to the vague nature of the vulnerability disclosure.