Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
278 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.1) | 5.2% | — | Apple Quicktime | 12/5/2006 | 16/6/2026 | Multiple buffer overflows in Apple QuickTime before 7.1 allow remote attackers to execute arbitrary code via a crafted QuickTime Flash (SWF) file. | |
| Modificada | Media (5.1) | 6.8% | — | Apple Quicktime | 12/5/2006 | 16/6/2026 | Buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted QuickTime MPEG4 (M4P) video format file. | |
| Modificada | Media (5.1) | 5.2% | — | Apple Quicktime | 12/5/2006 | 16/6/2026 | Buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted QuickTime AVI video format file. | |
| Modificada | Media (5.1) | 7.3% | — | Apple Quicktime | 12/5/2006 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted QuickDraw PICT image format file with malformed image data. | |
| Modificada | Media (5.1) | 6.5% | — | Apple Quicktime | 12/5/2006 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a H.264 (M4V) video format file with a certain modified size value. | |
| Modificada | Media (5.1) | 4.4% | — | Apple Quicktime | 12/5/2006 | 16/6/2026 | Multiple integer overflows in Apple QuickTime before 7.1 allow remote attackers to execute arbitrary code via a crafted QuickTime H.264 (M4V) video format file. | |
| Modificada | Media (5.1) | 7.1% | — | Apple Quicktime | 12/5/2006 | 16/6/2026 | Stack-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted QuickDraw PICT image format file containing malformed font information. | |
| Modificada | Media (5.1) | 5.5% | — | Apple Quicktime | 12/5/2006 | 16/6/2026 | Multiple buffer overflows in Apple QuickTime before 7.1 allow remote attackers to execute arbitrary code via a crafted QuickTime movie (.MOV), as demonstrated via a large size for a udta Atom. | |
| Modificada | Media (5.1) | 4.4% | — | Apple Quicktime | 12/5/2006 | 16/6/2026 | Multiple integer overflows in Apple QuickTime before 7.1 allow remote attackers to cause a denial of service or execute arbitrary code via a crafted QuickTime movie (.MOV). | |
| Modificada | Media (5.1) | 3.6% | — | Apple Quicktime | 12/5/2006 | 16/6/2026 | Integer overflow in Apple QuickTime Player before 7.1 allows remote attackers to execute arbitrary code via a crafted JPEG image. | |
| Modificada | Media (6.8) | 6.0% | — | Apple ItunesApple Quicktime | 19/3/2006 | 16/6/2026 | Integer overflow in Apple QuickTime Player 7.0.3 and 7.0.4 and iTunes 6.0.1 and 6.0.2 allows remote attackers to execute arbitrary code via a FlashPix (FPX) image that contains a field that specifies a large number of blocks. | |
| Modificada | Alta (7.5) | 26% | 💥 Exploit | Apple Quicktime | 31/12/2005 | 16/6/2026 | Heap-based buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a crafted (1) QuickTime Image File (QTIF), (2) PICT, or (3) JPEG format image with a long data field. | |
| Modificada | Alta (7.5) | 7.3% | — | Apple Quicktime | 31/12/2005 | 16/6/2026 | Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a TIFF image file with modified image height and width (ImageWidth) tags. | |
| Modificada | Alta (7.5) | 4.1% | — | Apple Quicktime | 31/12/2005 | 16/6/2026 | Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a TIFF image file with modified (1) "strips" (StripByteCounts) or (2) "bands" (StripOffsets) values. | |
| Modificada | Alta (7.5) | 8.0% | — | Apple Quicktime | 31/12/2005 | 16/6/2026 | Buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via crafted TGA image files. | |
| Modificada | Alta (7.5) | 8.6% | — | Apple Quicktime | 31/12/2005 | 16/6/2026 | Heap-based buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a GIF image file with a crafted Netscape Navigator Application Extension Block that modifies the heap in the Picture Modifier block. | |
| Modificada | Alta (7.5) | 3.2% | — | Apple Quicktime | 31/12/2005 | 16/6/2026 | Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via crafted TGA image files. | |
| Modificada | Alta (7.5) | 4.0% | — | Apple Quicktime | 31/12/2005 | 16/6/2026 | Integer underflow in Apple Quicktime before 7.0.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the Color Map Entry Size in a TGA image file. | |
| Modificada | Alta (7.5) | 8.8% | — | Apple ItunesApple Quicktime | 8/12/2005 | 16/6/2026 | Multiple heap-based buffer overflows in QuickTime.qts in Apple QuickTime Player 7.0.3 and iTunes 6.0.1 (3) and earlier allow remote attackers to cause a denial of service (crash) and execute arbitrary code via a .mov file with (1) a Movie Resource atom with a large size value, or (2) an stsd atom with a modified… | |
| Modificada | Baja (2.6) | 1.8% | — | Apple Quicktime | 5/11/2005 | 16/6/2026 | Apple QuickTime Player before 7.0.3 allows user-assisted attackers to cause a denial of service (crash) via a crafted file with a missing movie attribute, which leads to a null dereference. | |
| Modificada | Media (5.1) | 2.1% | — | Apple Quicktime | 5/11/2005 | 16/6/2026 | Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file that causes a sign extension of the length element in a Pascal style string. | |
| Modificada | Media (5.1) | 2.1% | — | Apple Quicktime | 5/11/2005 | 16/6/2026 | Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file with "Improper movie attributes." | |
| Modificada | Media (5.1) | 4.2% | — | Apple Quicktime | 5/11/2005 | 16/6/2026 | Apple QuickTime before 7.0.3 allows user-assisted attackers to overwrite memory and execute arbitrary code via a crafted PICT file that triggers an overflow during expansion. | |
| Modificada | Alta (7.5) | 4.7% | — | Apple QuicktimeApple MAC OS XApple MAC OS X Server | 26/10/2005 | 16/6/2026 | The Java extensions for QuickTime 6.52 and earlier in Apple Mac OS X 10.3.9 allow untrusted applets to call arbitrary functions in system libraries, which allows remote attackers to execute arbitrary code. | |
| Modificada | Media (5) | 2.0% | — | Apple Quicktime | 12/5/2005 | 16/6/2026 | Apple QuickTime Player 7.0 on Mac OS X 10.4 allows remote attackers to obtain sensitive information via a .mov file with a Quartz Composer composition (.qtz) file that uses certain patches to read local information, then other patches to send the information to the attacker. |