CVE-2012-3758: Buffer Overflow
Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted transform attribute in a text3GTrack element in a QuickTime TeXML file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-3758?
CVE-2012-3758 is classified as a critical vulnerability due to its ability to allow remote attackers to execute arbitrary code or cause application crashes.
How do I fix CVE-2012-3758?
To address CVE-2012-3758, you should upgrade Apple QuickTime to version 7.7.3 or later.
What systems are affected by CVE-2012-3758?
CVE-2012-3758 affects multiple versions of Apple QuickTime, including all versions prior to 7.7.3 and several earlier versions.
What type of vulnerability is CVE-2012-3758?
CVE-2012-3758 is a buffer overflow vulnerability that can be exploited through specially crafted TeXML files.
Can CVE-2012-3758 be exploited remotely?
Yes, CVE-2012-3758 can be exploited remotely when users open malicious TeXML files.