CVE-2010-0529: Buffer Overflow
Heap-based buffer overflow in QuickTime.qts in Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a PICT image with a BkPixPat opcode (0x12) containing crafted values that are used in a calculation for memory allocation.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0529?
CVE-2010-0529 is classified as a critical vulnerability due to its potential to allow remote attackers to execute arbitrary code.
How do I fix CVE-2010-0529?
To mitigate CVE-2010-0529, users should upgrade to Apple QuickTime version 7.6.6 or later.
What software versions are affected by CVE-2010-0529?
CVE-2010-0529 affects all versions of Apple QuickTime before 7.6.6 on Windows.
What type of attack does CVE-2010-0529 enable?
CVE-2010-0529 enables a heap-based buffer overflow attack through specially crafted PICT images.
Can CVE-2010-0529 cause a denial of service?
Yes, CVE-2010-0529 can cause a denial of service, leading to application crashes.