Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3035▼ 39 respecto a la semana anterior
Críticas / altas1415▲ 62 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)385▼ 125 respecto a la semana anterior
278 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (9.3) | 4.2% | — | Apple Quicktime | 4/8/2011 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.7 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted GIF file. | |
| Modificada | Alta (9.3) | 4.2% | — | Apple Quicktime | 4/8/2011 | 16/6/2026 | Buffer overflow in Apple QuickTime before 7.7 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted pict file. | |
| Modificada | Media (6.8) | 3.3% | — | Apple QuicktimeApple MAC OS X | 24/6/2011 | 16/6/2026 | Buffer overflow in QuickTime in Apple Mac OS X before 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JPEG file. | |
| Modificada | Media (6.8) | 2.9% | — | Apple QuicktimeApple MAC OS X | 24/6/2011 | 16/6/2026 | Integer overflow in QuickTime in Apple Mac OS X before 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file. | |
| Modificada | Media (6.8) | 2.9% | — | Apple QuicktimeApple MAC OS X | 24/6/2011 | 16/6/2026 | QuickTime in Apple Mac OS X before 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted sample tables in a movie file. | |
| Modificada | Media (6.8) | 2.9% | — | Apple QuicktimeApple MAC OS X | 24/6/2011 | 16/6/2026 | Integer overflow in QuickTime in Apple Mac OS X before 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted RIFF WAV file. | |
| Modificada | Media (4.3) | 2.0% | — | Apple QuicktimeApple MAC OS X | 23/3/2011 | 16/6/2026 | The plug-in in QuickTime in Apple Mac OS X before 10.6.7 allows remote attackers to bypass the Same Origin Policy and obtain potentially sensitive video data via vectors involving a cross-site redirect. | |
| Modificada | Media (4.3) | 2.6% | — | Apple QuicktimeApple MAC OS X | 23/3/2011 | 16/6/2026 | QuickTime in Apple Mac OS X before 10.6.7 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted JPEG2000 image. | |
| Modificada | Alta (9.3) | 4.9% | — | Apple Quicktime | 9/12/2010 | 16/6/2026 | Integer overflow in Apple QuickTime before 7.6.9 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file. | |
| Modificada | Alta (9.3) | 4.9% | — | Apple Quicktime | 9/12/2010 | 16/6/2026 | Integer signedness error in Apple QuickTime before 7.6.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted panorama atom in a QuickTime Virtual Reality (QTVR) movie file. | |
| Modificada | Alta (9.3) | 4.9% | — | Apple Quicktime | 9/12/2010 | 16/6/2026 | Apple QuickTime before 7.6.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted FlashPix file. | |
| Modificada | Alta (9.3) | 4.9% | — | Apple Quicktime | 9/12/2010 | 16/6/2026 | Apple QuickTime before 7.6.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted PICT file. | |
| Modificada | Alta (9.3) | 5.5% | — | Apple Quicktime | 9/12/2010 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.6.9 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted Track Header (aka tkhd) atoms. | |
| Modificada | Baja (2.1) | 0.35% | — | Apple Quicktime | 9/12/2010 | 16/6/2026 | Apple QuickTime before 7.6.9 on Windows sets weak permissions for the Apple Computer directory in the profile of a user account, which allows local users to obtain sensitive information by reading files in this directory. | |
| Modificada | Media (6.8) | 2.8% | — | Apple QuicktimeApple MAC OS XApple MAC OS X Server | 16/11/2010 | 16/6/2026 | QuickTime in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted Sorenson movie file. | |
| Modificada | Media (6.8) | 2.9% | — | Apple QuicktimeApple MAC OS XApple MAC OS X Server | 16/11/2010 | 16/6/2026 | Integer signedness error in QuickTime in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MPEG movie file. | |
| Modificada | Media (6.8) | 3.3% | — | Apple QuicktimeApple MAC OS XApple MAC OS X Server | 16/11/2010 | 16/6/2026 | Buffer overflow in QuickTime in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MPEG movie file. | |
| Modificada | Media (6.8) | 4.8% | — | Apple QuicktimeApple MAC OS XApple MAC OS X Server | 16/11/2010 | 16/6/2026 | QuickTime in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file that causes an image sample transformation to scale a sprite outside a buffer boundary. | |
| Modificada | Media (6.8) | 2.8% | — | Apple MAC OS XApple QuicktimeApple MAC OS X Server | 16/11/2010 | 16/6/2026 | QuickTime in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted AVI file. | |
| Modificada | Media (6.8) | 2.9% | — | Apple MAC OS XApple QuicktimeApple MAC OS X Server | 16/11/2010 | 16/6/2026 | QuickTime in Apple Mac OS X 10.6.x before 10.6.5 accesses uninitialized memory locations during processing of JP2 image data, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JP2 file. | |
| Modificada | Alta (9.3) | 43% | — | Apple Quicktime | 31/8/2010 | 16/6/2026 | The IPersistPropertyBag2::Read function in QTPlugin.ocx in Apple QuickTime 6.x, 7.x before 7.6.8, and other versions allows remote attackers to execute arbitrary code via the _Marshaled_pUnk attribute, which triggers unmarshalling of an untrusted pointer. | |
| Modificada | Alta (9.3) | 34% | — | Apple Quicktime | 16/8/2010 | 16/6/2026 | Stack-based buffer overflow in the error-logging functionality in Apple QuickTime before 7.6.7 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file. | |
| Modificada | Alta (9.3) | 3.7% | — | Apple Quicktime | 31/3/2010 | 16/6/2026 | Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted BMP image. | |
| Modificada | Alta (9.3) | 12% | — | Apple Quicktime | 31/3/2010 | 16/6/2026 | Heap-based buffer overflow in QuickTime.qts in Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a PICT image with a BkPixPat opcode (0x12) containing crafted values that are used in a calculation for memory allocation. | |
| Modificada | Alta (9.3) | 5.9% | — | Apple Quicktime | 31/3/2010 | 16/6/2026 | Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted color tables in a movie file, related to malformed MediaVideo data, a sample description atom (STSD), and a crafted length value. |