CVE-2006-1249

Integer overflow in Apple QuickTime Player 7.0.3 and 7.0.4 and iTunes 6.0.1 and 6.0.2 allows remote attackers to execute arbitrary code via a FlashPix (FPX) image that contains a field that specifies a large number of blocks.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:itunes:6.0.1:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:6.0.2:*:*:*:*:*:*:*
cpe:2.3:a:apple:quicktime:7.0.3:*:*:*:*:*:*:*
cpe:2.3:a:apple:quicktime:7.0.4:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-03-19 01:02

Updated : 2023-12-10 10:28


NVD link : CVE-2006-1249

Mitre link : CVE-2006-1249

CVE.ORG link : CVE-2006-1249


JSON object : View

Products Affected

apple

  • itunes
  • quicktime
CWE
CWE-189

Numeric Errors