libquicktime records
10 published records for vendor libquicktime.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 80%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-125 Out-of-bounds Read3
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-20 Improper Input Validation2
- CWE-190 Integer Overflow or Wraparound1
- CWE-476 NULL Pointer Dereference1
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
10 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
33Monitor | CVE-2016-2399Proof of concept | Integer overflow in the quicktime_read_pascal function in libquicktime 1.2.4 and earlier allows remote attackers to cause a denial of serviclibquicktime · libquicktime · CWE-190 | High7.8 | — | 7.2% | Jan 30, 2017 |
28Monitor | CVE-2017-9122Proof of concept | The quicktime_read_moov function in moov.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (infinite loop and CPUlibquicktime · libquicktime · CWE-835 | Medium6.5 | — | 6.5% | Jun 12, 2017 |
28Monitor | CVE-2017-9127Proof of concept | The quicktime_user_atoms_read_atom function in useratoms.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-libquicktime · libquicktime · CWE-119 | Medium6.5 | — | 5.1% | Jun 12, 2017 |
27Monitor | CVE-2017-9125Proof of concept | The lqt_frame_duration function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-based bulibquicktime · libquicktime · CWE-125 | Medium6.5 | — | 4.9% | Jun 12, 2017 |
27Monitor | CVE-2017-9126Proof of concept | The quicktime_read_dref_table function in dref.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-based bufflibquicktime · libquicktime · CWE-119 | Medium6.5 | — | 4.0% | Jun 12, 2017 |
27Monitor | CVE-2017-9128Proof of concept | The quicktime_video_width function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-basedlibquicktime · libquicktime · CWE-125 | Medium6.5 | — | 3.8% | Jun 12, 2017 |
27Monitor | CVE-2017-9123Proof of concept | The lqt_frame_duration function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (invalid memorlibquicktime · libquicktime · CWE-125 | Medium6.5 | — | 3.8% | Jun 12, 2017 |
27Monitor | CVE-2017-9124Proof of concept | The quicktime_match_32 function in util.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (NULL pointer dereferenlibquicktime · libquicktime · CWE-476 | Medium6.5 | — | 3.8% | Jun 12, 2017 |
26Monitor | CVE-2017-12145No exploit | In libquicktime 1.2.4, an allocation failure was found in the function quicktime_read_ftyp in ftyp.c, which allows attackers to cause a denilibquicktime · libquicktime · CWE-20 | Medium6.5 | — | 1.1% | Aug 2, 2017 |
26Monitor | CVE-2017-12143No exploit | In libquicktime 1.2.4, an allocation failure was found in the function quicktime_read_info in lqt_quicktime.c, which allows attackers to caulibquicktime · libquicktime · CWE-20 | Medium6.5 | — | 1.0% | Aug 2, 2017 |
- CVE-2016-239933Monitor
Integer overflow in the quicktime_read_pascal function in libquicktime 1.2.4 and earlier allows remote attackers to cause a denial of servic
HighCVSS 7.8Proof of conceptEPSS 7%libquicktime · libquicktimeJan 30, 2017
- CVE-2017-912228Monitor
The quicktime_read_moov function in moov.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (infinite loop and CPU
MediumCVSS 6.5Proof of conceptEPSS 7%libquicktime · libquicktimeJun 12, 2017
- CVE-2017-912728Monitor
The quicktime_user_atoms_read_atom function in useratoms.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-
MediumCVSS 6.5Proof of conceptEPSS 5%libquicktime · libquicktimeJun 12, 2017
- CVE-2017-912527Monitor
The lqt_frame_duration function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-based bu
MediumCVSS 6.5Proof of conceptEPSS 5%libquicktime · libquicktimeJun 12, 2017
- CVE-2017-912627Monitor
The quicktime_read_dref_table function in dref.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-based buff
MediumCVSS 6.5Proof of conceptEPSS 4%libquicktime · libquicktimeJun 12, 2017
- CVE-2017-912827Monitor
The quicktime_video_width function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-based
MediumCVSS 6.5Proof of conceptEPSS 4%libquicktime · libquicktimeJun 12, 2017
- CVE-2017-912327Monitor
The lqt_frame_duration function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (invalid memor
MediumCVSS 6.5Proof of conceptEPSS 4%libquicktime · libquicktimeJun 12, 2017
- CVE-2017-912427Monitor
The quicktime_match_32 function in util.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (NULL pointer dereferen
MediumCVSS 6.5Proof of conceptEPSS 4%libquicktime · libquicktimeJun 12, 2017
- CVE-2017-1214526Monitor
In libquicktime 1.2.4, an allocation failure was found in the function quicktime_read_ftyp in ftyp.c, which allows attackers to cause a deni
MediumCVSS 6.5No exploitEPSS 1%libquicktime · libquicktimeAug 2, 2017
- CVE-2017-1214326Monitor
In libquicktime 1.2.4, an allocation failure was found in the function quicktime_read_info in lqt_quicktime.c, which allows attackers to cau
MediumCVSS 6.5No exploitEPSS 1%libquicktime · libquicktimeAug 2, 2017