Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
–

278 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5.1)5.2%—Apple Quicktime12/5/200616/6/2026
Multiple buffer overflows in Apple QuickTime before 7.1 allow remote attackers to execute arbitrary code via a crafted QuickTime Flash (SWF) file.
ModificadaMedia (5.1)6.8%—Apple Quicktime12/5/200616/6/2026
Buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted QuickTime MPEG4 (M4P) video format file.
ModificadaMedia (5.1)5.2%—Apple Quicktime12/5/200616/6/2026
Buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted QuickTime AVI video format file.
ModificadaMedia (5.1)7.3%—Apple Quicktime12/5/200616/6/2026
Heap-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted QuickDraw PICT image format file with malformed image data.
ModificadaMedia (5.1)6.5%—Apple Quicktime12/5/200616/6/2026
Heap-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a H.264 (M4V) video format file with a certain modified size value.
ModificadaMedia (5.1)4.4%—Apple Quicktime12/5/200616/6/2026
Multiple integer overflows in Apple QuickTime before 7.1 allow remote attackers to execute arbitrary code via a crafted QuickTime H.264 (M4V) video format file.
ModificadaMedia (5.1)7.1%—Apple Quicktime12/5/200616/6/2026
Stack-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted QuickDraw PICT image format file containing malformed font information.
ModificadaMedia (5.1)5.5%—Apple Quicktime12/5/200616/6/2026
Multiple buffer overflows in Apple QuickTime before 7.1 allow remote attackers to execute arbitrary code via a crafted QuickTime movie (.MOV), as demonstrated via a large size for a udta Atom.
ModificadaMedia (5.1)4.4%—Apple Quicktime12/5/200616/6/2026
Multiple integer overflows in Apple QuickTime before 7.1 allow remote attackers to cause a denial of service or execute arbitrary code via a crafted QuickTime movie (.MOV).
ModificadaMedia (5.1)3.6%—Apple Quicktime12/5/200616/6/2026
Integer overflow in Apple QuickTime Player before 7.1 allows remote attackers to execute arbitrary code via a crafted JPEG image.
ModificadaMedia (6.8)6.0%—Apple ItunesApple Quicktime19/3/200616/6/2026
Integer overflow in Apple QuickTime Player 7.0.3 and 7.0.4 and iTunes 6.0.1 and 6.0.2 allows remote attackers to execute arbitrary code via a FlashPix (FPX) image that contains a field that specifies a large number of blocks.
ModificadaAlta (7.5)26%💥 ExploitApple Quicktime31/12/200516/6/2026
Heap-based buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a crafted (1) QuickTime Image File (QTIF), (2) PICT, or (3) JPEG format image with a long data field.
ModificadaAlta (7.5)7.3%—Apple Quicktime31/12/200516/6/2026
Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a TIFF image file with modified image height and width (ImageWidth) tags.
ModificadaAlta (7.5)4.1%—Apple Quicktime31/12/200516/6/2026
Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a TIFF image file with modified (1) "strips" (StripByteCounts) or (2) "bands" (StripOffsets) values.
ModificadaAlta (7.5)8.0%—Apple Quicktime31/12/200516/6/2026
Buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via crafted TGA image files.
ModificadaAlta (7.5)8.6%—Apple Quicktime31/12/200516/6/2026
Heap-based buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a GIF image file with a crafted Netscape Navigator Application Extension Block that modifies the heap in the Picture Modifier block.
ModificadaAlta (7.5)3.2%—Apple Quicktime31/12/200516/6/2026
Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via crafted TGA image files.
ModificadaAlta (7.5)4.0%—Apple Quicktime31/12/200516/6/2026
Integer underflow in Apple Quicktime before 7.0.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the Color Map Entry Size in a TGA image file.
ModificadaAlta (7.5)8.8%—Apple ItunesApple Quicktime8/12/200516/6/2026
Multiple heap-based buffer overflows in QuickTime.qts in Apple QuickTime Player 7.0.3 and iTunes 6.0.1 (3) and earlier allow remote attackers to cause a denial of service (crash) and execute arbitrary code via a .mov file with (1) a Movie Resource atom with a large size value, or (2) an stsd atom with a modified…
ModificadaBaja (2.6)1.8%—Apple Quicktime5/11/200516/6/2026
Apple QuickTime Player before 7.0.3 allows user-assisted attackers to cause a denial of service (crash) via a crafted file with a missing movie attribute, which leads to a null dereference.
ModificadaMedia (5.1)2.1%—Apple Quicktime5/11/200516/6/2026
Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file that causes a sign extension of the length element in a Pascal style string.
ModificadaMedia (5.1)2.1%—Apple Quicktime5/11/200516/6/2026
Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file with "Improper movie attributes."
ModificadaMedia (5.1)4.2%—Apple Quicktime5/11/200516/6/2026
Apple QuickTime before 7.0.3 allows user-assisted attackers to overwrite memory and execute arbitrary code via a crafted PICT file that triggers an overflow during expansion.
ModificadaAlta (7.5)4.7%—Apple QuicktimeApple MAC OS XApple MAC OS X Server26/10/200516/6/2026
The Java extensions for QuickTime 6.52 and earlier in Apple Mac OS X 10.3.9 allow untrusted applets to call arbitrary functions in system libraries, which allows remote attackers to execute arbitrary code.
ModificadaMedia (5)2.0%—Apple Quicktime12/5/200516/6/2026
Apple QuickTime Player 7.0 on Mac OS X 10.4 allows remote attackers to obtain sensitive information via a .mov file with a Quartz Composer composition (.qtz) file that uses certain patches to read local information, then other patches to send the information to the attacker.
Orbitaley — Vulnerabilidades