A remote overflow exists in the Mac OS X default handler for files with a '.bmp' extension. The 'ReadBMP' function fails to properly validate input, resulting in a heap overflow. With a specially crafted file, an attacker can cause the applicaton to crash and potentially execute arbitrary code on the victim's system, resulting in a loss of integrity.
Classification
Location:
Remote / Network Access
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Exploit:
Exploit Unknown
Solution
Upgrade to QuickTime version 7.1 or higher, as it has been reported to fix this vulnerability. A seperate upgrade may be required to address other components of the operating system.
This product uses the Daylife API but is not endorsed or certified by Daylife.
This section lists the latest news and blogs found via the daylife API (and for older items, the technorati API), which mention or otherwise discuss this vulnerability.