Description
Unspecified vulnerability in Apple QuickTime Player on Windows XP SP2 and Vista SP1 allows remote attackers to execute arbitrary code via a crafted QuickTime media file. NOTE: as of 20080429, the only disclosure is a vague pre-advisory with no actionable information. However, because it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes.
References (4)
Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/42098
Various Sources x_refsource_misc
http://www.gnucitizen.org/blog/quicktime-0day-for-vista-and-xp/
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id?1019950
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/28959
Scores
EPSS
0.0337
EPSS Percentile
87.5%
Details
Status
published
Products (1)
apple/quicktime
Published
Apr 30, 2008
Tracked Since
Feb 18, 2026