CVE-2010-0528: Buffer Overflow
Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted color tables in a movie file, related to malformed MediaVideo data, a sample description atom (STSD), and a crafted length value.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0528?
CVE-2010-0528 has a high severity as it allows remote attackers to execute arbitrary code or cause a denial of service.
How do I fix CVE-2010-0528?
To fix CVE-2010-0528, users should update Apple QuickTime to version 7.6.6 or later on Windows.
Which versions of QuickTime are affected by CVE-2010-0528?
CVE-2010-0528 affects Apple QuickTime versions prior to 7.6.6 on Windows.
What types of attacks are possible with CVE-2010-0528?
CVE-2010-0528 may lead to arbitrary code execution or application crashes due to memory corruption.
Is it safe to use QuickTime on Windows after updating for CVE-2010-0528?
Yes, after updating to version 7.6.6 or later, it is safe to use QuickTime on Windows regarding CVE-2010-0528.