Vulnerability Database

290,020

Total vulnerabilities in the database

CVE-2007-0714

Integer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted QuickTime movie with a User Data Atom (UDTA) with an Atom size field with a large value.

  • Published: Mar 5, 2007
  • Updated: Apr 13, 2023
  • CVE: CVE-2007-0714
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 9.3
  • AV:N/AC:M/Au:N/C:C/I:C/A:C

CWEs:

Software From Fixed in
apple / quicktime - 7.1.4.x
apple / quicktime 3.0 3.0.x
apple / quicktime 4.1.2 4.1.2.x
apple / quicktime 5.0.1 5.0.1.x
apple / quicktime 5.0.2 5.0.2.x
apple / quicktime 6.0 6.0.x
apple / quicktime 6.0.0 6.0.0.x
apple / quicktime 6.0.1 6.0.1.x
apple / quicktime 6.0.2 6.0.2.x
apple / quicktime 6.1.0 6.1.0.x
apple / quicktime 6.1.1 6.1.1.x
apple / quicktime 6.2.0 6.2.0.x
apple / quicktime 6.3.0 6.3.0.x
apple / quicktime 6.4.0 6.4.0.x
apple / quicktime 6.5.0 6.5.0.x
apple / quicktime 6.5.1 6.5.1.x
apple / quicktime 6.5.2 6.5.2.x
apple / quicktime 7.0 7.0.x
apple / quicktime 7.0.0 7.0.0.x
apple / quicktime 7.0.1 7.0.1.x
apple / quicktime 7.0.2 7.0.2.x
apple / quicktime 7.0.3 7.0.3.x
apple / quicktime 7.0.4 7.0.4.x
apple / quicktime 7.1.0 7.1.0.x
apple / quicktime 7.1.1 7.1.1.x
apple / quicktime 7.1.2 7.1.2.x
apple / quicktime 7.1.3 7.1.3.x