CVE-2011-3247: Integer Overflow
Integer overflow in Apple QuickTime before 7.7.1 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-3247?
CVE-2011-3247 is classified with critical severity due to its potential to allow arbitrary code execution and application crashes.
How do I fix CVE-2011-3247?
To fix CVE-2011-3247, update Apple QuickTime to version 7.7.1 or later, as this version addresses the vulnerability.
What versions of Apple QuickTime are affected by CVE-2011-3247?
CVE-2011-3247 affects Apple QuickTime versions prior to 7.7.1 and all versions from 3.0 up to and including 7.7.0.
Can CVE-2011-3247 cause data loss?
CVE-2011-3247 can lead to application crashes, which may result in temporary data loss if unsaved work is interrupted.
Is there a workaround for CVE-2011-3247 if I cannot update?
As a workaround for CVE-2011-3247, consider disabling QuickTime file handling temporarily until a software update can be applied.