CVE-2010-0520
Mac OS X - Heap-Based Buffer Overflow in QuickTimeAuthoring.qtx via Crafted FLC File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-0520. PoCs published by Abysssec.
AI-analyzed exploit summary This exploit targets a remote code execution vulnerability in Apple QuickTime 7.6.5 via a malformed FLI file. The PoC contains a crafted binary payload designed to trigger the vulnerability when parsed by the QuickTime player.
Description
Heap-based buffer overflow in QuickTimeAuthoring.qtx in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FLC file, related to crafted DELTA_FLI chunks and untrusted length values in a .fli file, which are not properly handled during decompression.
Exploits (1)
This exploit targets a remote code execution vulnerability in Apple QuickTime 7.6.5 via a malformed FLI file. The PoC contains a crafted binary payload designed to trigger the vulnerability when parsed by the QuickTime player.