CVE-2015-3661: Buffer Overflow
Published Jul 3, 2015
·Updated
QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X before 10.10.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file, a different vulnerability than CVE-2015-3662, CVE-2015-3663, CVE-2015-3666, CVE-2015-3667, and CVE-2015-3668.
Affected Software
2 affected components
Apple QuickTime<=7.7.6
Apple iOS and macOS<=10.10.3
Remediation
Event History
Jul 3, 2015
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-3661?
CVE-2015-3661 has a critical severity rating due to its potential to allow remote code execution.
2
How do I fix CVE-2015-3661?
To fix CVE-2015-3661, upgrade QuickTime to version 7.7.7 or later.
3
What versions of QuickTime are affected by CVE-2015-3661?
CVE-2015-3661 affects QuickTime versions prior to 7.7.7.
4
Which operating systems are impacted by CVE-2015-3661?
CVE-2015-3661 impacts macOS versions before 10.10.4.
5
What type of vulnerability is CVE-2015-3661?
CVE-2015-3661 is a memory corruption vulnerability that can lead to arbitrary code execution.