CVE-2011-3250: Integer Overflow
Integer overflow in Apple QuickTime before 7.7.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with JPEG2000 encoding.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-3250?
CVE-2011-3250 is considered critical as it allows remote attackers to execute arbitrary code or cause a denial of service.
How do I fix CVE-2011-3250?
To fix CVE-2011-3250, update your Apple QuickTime to version 7.7.1 or later.
What causes the vulnerability CVE-2011-3250?
CVE-2011-3250 is caused by an integer overflow in Apple QuickTime when processing crafted movie files with JPEG2000 encoding.
Which versions of QuickTime are affected by CVE-2011-3250?
CVE-2011-3250 affects all versions of Apple QuickTime prior to 7.7.1.
Can CVE-2011-3250 lead to data loss?
While CVE-2011-3250 primarily allows arbitrary code execution or application crashes, it could indirectly lead to data loss depending on the nature of the executed code.