Title: Apple QuickTime VR Extension QTVR Movie Handling Overflow
Info
Disclosure
Nov 05, 2007
Discovery
Unknown
Dates
Exploit
Unknown
Solution
Jun 13, 2008
Description
A remote overflow exists in Apple QuickTime Player. The media player fails to check bounds on panorama sample atoms in QuickTime Virtual Reality movies resulting in a heap-based overflow. With a specially crafted movie file, an attacker can cause arbitrary code execution resulting in a loss of integrity.