CVE-2007-0462 Information

Description

The _GetSrcBits32ARGB function in Apple QuickDraw as used by Quicktime 7.1.3 and other applications on Mac OS X 10.4.8 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PICT image with a malformed Alpha RGB (ARGB) record which triggers memory corruption.

Reference

http://projects.info-pull.com/moab/MOAB-23-01-2007.html http://secunia.com/advisories/23859 http://www.osvdb.org/32696 http://www.securityfocus.com/bid/22207 http://www.vupen.com/english/advisories/2007/0337 https://exchange.xforce.ibmcloud.com/vulnerabilities/31698

Share on: