Записи libquicktime
10 опубликованных записей вендора libquicktime.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 80 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-125 Out-of-bounds Read3
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-20 Improper Input Validation2
- CWE-190 Integer Overflow or Wraparound1
- CWE-476 NULL Pointer Dereference1
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
10 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
33Наблюдать | CVE-2016-2399Proof of concept | Integer overflow in the quicktime_read_pascal function in libquicktime 1.2.4 and earlier allows remote attackers to cause a denial of serviclibquicktime · libquicktime · CWE-190 | Высокая7,8 | — | 7,2 % | 30 янв. 2017 г. |
28Наблюдать | CVE-2017-9122Proof of concept | The quicktime_read_moov function in moov.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (infinite loop and CPUlibquicktime · libquicktime · CWE-835 | Средняя6,5 | — | 6,5 % | 12 июн. 2017 г. |
28Наблюдать | CVE-2017-9127Proof of concept | The quicktime_user_atoms_read_atom function in useratoms.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-libquicktime · libquicktime · CWE-119 | Средняя6,5 | — | 5,1 % | 12 июн. 2017 г. |
27Наблюдать | CVE-2017-9125Proof of concept | The lqt_frame_duration function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-based bulibquicktime · libquicktime · CWE-125 | Средняя6,5 | — | 4,9 % | 12 июн. 2017 г. |
27Наблюдать | CVE-2017-9126Proof of concept | The quicktime_read_dref_table function in dref.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-based bufflibquicktime · libquicktime · CWE-119 | Средняя6,5 | — | 4,0 % | 12 июн. 2017 г. |
27Наблюдать | CVE-2017-9128Proof of concept | The quicktime_video_width function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-basedlibquicktime · libquicktime · CWE-125 | Средняя6,5 | — | 3,8 % | 12 июн. 2017 г. |
27Наблюдать | CVE-2017-9123Proof of concept | The lqt_frame_duration function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (invalid memorlibquicktime · libquicktime · CWE-125 | Средняя6,5 | — | 3,8 % | 12 июн. 2017 г. |
27Наблюдать | CVE-2017-9124Proof of concept | The quicktime_match_32 function in util.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (NULL pointer dereferenlibquicktime · libquicktime · CWE-476 | Средняя6,5 | — | 3,8 % | 12 июн. 2017 г. |
26Наблюдать | CVE-2017-12145Эксплойта нет | In libquicktime 1.2.4, an allocation failure was found in the function quicktime_read_ftyp in ftyp.c, which allows attackers to cause a denilibquicktime · libquicktime · CWE-20 | Средняя6,5 | — | 1,1 % | 2 авг. 2017 г. |
26Наблюдать | CVE-2017-12143Эксплойта нет | In libquicktime 1.2.4, an allocation failure was found in the function quicktime_read_info in lqt_quicktime.c, which allows attackers to caulibquicktime · libquicktime · CWE-20 | Средняя6,5 | — | 1,0 % | 2 авг. 2017 г. |
- CVE-2016-239933Наблюдать
Integer overflow in the quicktime_read_pascal function in libquicktime 1.2.4 and earlier allows remote attackers to cause a denial of servic
ВысокаяCVSS 7,8Proof of conceptEPSS 7 %libquicktime · libquicktime30 янв. 2017 г.
- CVE-2017-912228Наблюдать
The quicktime_read_moov function in moov.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (infinite loop and CPU
СредняяCVSS 6,5Proof of conceptEPSS 7 %libquicktime · libquicktime12 июн. 2017 г.
- CVE-2017-912728Наблюдать
The quicktime_user_atoms_read_atom function in useratoms.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-
СредняяCVSS 6,5Proof of conceptEPSS 5 %libquicktime · libquicktime12 июн. 2017 г.
- CVE-2017-912527Наблюдать
The lqt_frame_duration function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-based bu
СредняяCVSS 6,5Proof of conceptEPSS 5 %libquicktime · libquicktime12 июн. 2017 г.
- CVE-2017-912627Наблюдать
The quicktime_read_dref_table function in dref.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-based buff
СредняяCVSS 6,5Proof of conceptEPSS 4 %libquicktime · libquicktime12 июн. 2017 г.
- CVE-2017-912827Наблюдать
The quicktime_video_width function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (heap-based
СредняяCVSS 6,5Proof of conceptEPSS 4 %libquicktime · libquicktime12 июн. 2017 г.
- CVE-2017-912327Наблюдать
The lqt_frame_duration function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (invalid memor
СредняяCVSS 6,5Proof of conceptEPSS 4 %libquicktime · libquicktime12 июн. 2017 г.
- CVE-2017-912427Наблюдать
The quicktime_match_32 function in util.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (NULL pointer dereferen
СредняяCVSS 6,5Proof of conceptEPSS 4 %libquicktime · libquicktime12 июн. 2017 г.
- CVE-2017-1214526Наблюдать
In libquicktime 1.2.4, an allocation failure was found in the function quicktime_read_ftyp in ftyp.c, which allows attackers to cause a deni
СредняяCVSS 6,5Эксплойта нетEPSS 1 %libquicktime · libquicktime2 авг. 2017 г.
- CVE-2017-1214326Наблюдать
In libquicktime 1.2.4, an allocation failure was found in the function quicktime_read_info in lqt_quicktime.c, which allows attackers to cau
СредняяCVSS 6,5Эксплойта нетEPSS 1 %libquicktime · libquicktime2 авг. 2017 г.