Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3028▼ 62 respecto a la semana anterior
Críticas / altas1422▲ 60 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
278 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (9.3) | 3.8% | — | Apple Quicktime | 31/3/2010 | 16/6/2026 | Integer overflow in Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT image. | |
| Modificada | Alta (9.3) | 5.7% | — | Apple Quicktime | 10/9/2009 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted H.264 movie file. | |
| Modificada | Alta (9.3) | 5.7% | — | Apple Quicktime | 10/9/2009 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FlashPix file. | |
| Modificada | Alta (9.3) | 5.7% | — | Apple Quicktime | 10/9/2009 | 16/6/2026 | Buffer overflow in Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MPEG-4 video file. | |
| Modificada | Alta (9.3) | 4.9% | — | Apple Quicktime | 10/9/2009 | 16/6/2026 | Apple QuickTime before 7.6.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted H.264 movie file. | |
| Modificada | Alta (9.3) | 5.7% | — | Apple Quicktime | 2/6/2009 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JP2 image. | |
| Modificada | Alta (9.3) | 5.1% | — | Apple Quicktime | 2/6/2009 | 16/6/2026 | Apple QuickTime before 7.6.2 does not properly initialize memory before use in handling movie files, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a movie containing a user data atom of size zero. | |
| Modificada | Alta (9.3) | 9.5% | — | Apple Quicktime | 2/6/2009 | 16/6/2026 | Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted image description atoms in an Apple video file, related to a "sign extension issue." | |
| Modificada | Alta (9.3) | 5.7% | — | Apple Quicktime | 2/6/2009 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.6.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a movie file containing crafted Clipping Region (CRGN) atom types. | |
| Modificada | Alta (9.3) | 5.4% | — | Apple Quicktime | 2/6/2009 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT image. | |
| Modificada | Alta (9.3) | 4.8% | — | Apple Quicktime | 2/6/2009 | 16/6/2026 | Buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted compressed PSD image. | |
| Modificada | Alta (9.3) | 6.5% | — | Apple Quicktime | 2/6/2009 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FLC compression file. | |
| Modificada | Alta (9.3) | 4.9% | — | Apple Quicktime | 2/6/2009 | 16/6/2026 | Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie composed of a Sorenson 3 video file. | |
| Modificada | Alta (9.3) | 5.8% | — | Apple Quicktime | 2/6/2009 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted MS ADPCM encoded audio data in an AVI movie file. | |
| Modificada | Alta (7.6) | 4.0% | — | Apple Quicktime Mpeg-2 Playback Component | 22/1/2009 | 16/6/2026 | Unspecified vulnerability in Apple QuickTime MPEG-2 Playback Component before 7.60.92.0 on Windows allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a crafted MPEG-2 movie. | |
| Modificada | Alta (9.3) | 7.7% | — | Apple Quicktime | 21/1/2009 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a QuickTime movie file containing invalid image width data in JPEG atoms within STSD atoms. | |
| Modificada | Alta (9.3) | 8.2% | — | Apple Quicktime | 21/1/2009 | 16/6/2026 | Integer signedness error in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a Cinepak encoded movie file with a crafted MDAT atom that triggers a heap-based buffer overflow. | |
| Modificada | Alta (9.3) | 4.5% | — | Apple Quicktime | 21/1/2009 | 16/6/2026 | Unspecified vulnerability in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted H.263 encoded movie file that triggers memory corruption. | |
| Modificada | Alta (9.3) | 5.7% | — | Apple Quicktime | 21/1/2009 | 16/6/2026 | Buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted MP3 audio file. | |
| Modificada | Alta (9.3) | 9.4% | — | Apple Quicktime | 21/1/2009 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and execute arbitrary code via an AVI movie file with an invalid nBlockAlign value in the _WAVEFORMATEX structure. | |
| Modificada | Alta (9.3) | 7.9% | — | Apple Quicktime | 21/1/2009 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a QTVR movie file with crafted THKD atoms. | |
| Modificada | Alta (9.3) | 6.8% | — | Apple Quicktime | 21/1/2009 | 16/6/2026 | Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted RTSP URL. | |
| Modificada | Alta (9.3) | 9.7% | — | Apple ItunesApple Quicktime | 10/12/2008 | 16/6/2026 | Stack-based buffer overflow in Apple QuickTime Player 7.5.5 and iTunes 8.0.2.20 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a MOV file with "long arguments," related to an "off by one overflow." | |
| Modificada | Alta (9.3) | 12% | — | Apple ItunesApple Quicktime | 18/9/2008 | 16/6/2026 | Buffer overflow in Apple QuickTime 7.5.5 and iTunes 8.0 allows remote attackers to cause a denial of service (browser crash) or possibly execute arbitrary code via a long type attribute in a quicktime tag (1) on a web page or embedded in a (2) .mp4 or (3) .mov file, possibly related to the Check_stack_cookie function… | |
| Modificada | Alta (9.3) | 6.1% | — | Apple QuicktimeIntel Indeo | 11/9/2008 | 16/6/2026 | Stack-based buffer overflow in QuickTimeInternetExtras.qtx in an unspecified third-party Indeo v3.2 (aka IV32) codec for QuickTime, when used with Apple QuickTime before 7.5.5 on Windows, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file. |