CVE-2005-0903

QuickTime PictureViewer 6.5.1 - Denial of Service via Crafted JPEG Huffman Table

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-0903. PoCs published by [email protected].

AI-analyzed exploit summary This exploit generates a malformed image file by manipulating specific bytes to trigger a buffer overflow in Apple QuickTime 6.5.1 for Windows. It reads an input file, modifies it to include a crafted payload, and writes the result to an output file.

Description

Buffer overflow in QuickTime PictureViewer 6.5.1 allows remote attackers to cause a denial of service (application crash) via a JPEG file with crafted Huffman Table (marker DHT) data.

Exploits (1)

exploitdb WORKING POC VERIFIED
by [email protected] · pythondoswindows
https://www.exploit-db.com/exploits/25281

This exploit generates a malformed image file by manipulating specific bytes to trigger a buffer overflow in Apple QuickTime 6.5.1 for Windows. It reads an input file, modifies it to include a crafted payload, and writes the result to an output file.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: Apple QuickTime 6.5.1 for Windows
No auth needed
Prerequisites: A vulnerable version of Apple QuickTime · An input image file to modify
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=111186277521713&w=2
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/12905

Scores

EPSS 0.0215
EPSS Percentile 79.9%

Details

Status published
Products (1)
apple/quicktime_pictureviewer 6.5.1
Published May 02, 2005
Tracked Since Feb 18, 2026