CVE-2015-3667: Buffer Overflow
QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X before 10.10.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file, a different vulnerability than CVE-2015-3661, CVE-2015-3662, CVE-2015-3663, CVE-2015-3666, and CVE-2015-3668.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-3667?
CVE-2015-3667 is classified as a critical vulnerability that can allow remote attackers to execute arbitrary code.
How do I fix CVE-2015-3667?
To fix CVE-2015-3667, users should update Apple QuickTime to version 7.7.7 or later and ensure their OS X is updated to 10.10.4 or later.
What products are affected by CVE-2015-3667?
CVE-2015-3667 affects Apple QuickTime versions up to 7.7.6 and OS X versions up to 10.10.3.
Can CVE-2015-3667 cause denial of service?
Yes, CVE-2015-3667 can cause denial of service due to memory corruption vulnerabilities.
Who can exploit CVE-2015-3667?
CVE-2015-3667 can be exploited by remote attackers using specially crafted files.