CVE-2011-0248: Buffer Overflow
Stack-based buffer overflow in the QuickTime ActiveX control in Apple QuickTime before 7.7 on Windows, when Internet Explorer is used, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted QTL file.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0248?
CVE-2011-0248 is classified as a critical vulnerability due to its ability to allow remote attackers to execute arbitrary code or cause a denial of service.
How do I fix CVE-2011-0248?
To fix CVE-2011-0248, update the Apple QuickTime software to version 7.7 or later.
Which software is affected by CVE-2011-0248?
CVE-2011-0248 affects various versions of Apple QuickTime, including all versions prior to 7.7.
Can CVE-2011-0248 affect my system if I don't use Internet Explorer?
CVE-2011-0248 specifically impacts users of Internet Explorer when opening crafted QTL files in QuickTime.
What are the potential consequences of exploiting CVE-2011-0248?
Exploiting CVE-2011-0248 can lead to arbitrary code execution, allowing attackers to potentially take control of the affected system.