Apple QuickTime Remote Memory Corruption Vulnerability (CVE-2015-5786)
Apple QuickTime Remote Memory Corruption Vulnerability (CVE-2015-5786)
Release date:
Updated on:
Affected Systems:
Apple Quicktime <7.7.8
Description:
Bugtraq id: 76444
CVE (CAN) ID: CVE-2015-5786
QuickTime is a multimedia architecture developed by Apple Computer. It can process many digital videos, media paragraphs, sound effects, text, animations, music formats, and interactive panoramic images.
In versions earlier than Apple QuickTime 7.7.8, the remote memory corruption vulnerability exists. Remote attackers can exploit this vulnerability to execute arbitrary code or cause denial-of-service attacks by constructing files.
<* Source: Richard Johnson
Ryan Pentney
*>
Suggestion:
Vendor patch:
Apple
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://lists.apple.com/archives/security-announce/2015/Aug/msg00004.html
Https://support.apple.com/HT205046
This article permanently updates the link address: