CVE-2010-1799
Apple QuickTime - Stack-based Buffer Overflow via Crafted Movie File
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2010-1799.
PoCs published by Metasploit, Krystian Kloskowski, jduck, including Metasploit module exploits/windows/browser/apple_quicktime_smil_debug.
AI-analyzed exploit summary This Metasploit module exploits a stack-based buffer overflow in Apple QuickTime 7.6.6 via a malformed SMIL URI, leading to remote code execution. It uses heap spraying and SEH overwrites to achieve reliability.
Description
Stack-based buffer overflow in the error-logging functionality in Apple QuickTime before 7.6.7 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file.
Exploits (2)
This Metasploit module exploits a stack-based buffer overflow in Apple QuickTime 7.6.6 via a malformed SMIL URI, leading to remote code execution. It uses heap spraying and SEH overwrites to achieve reliability.
This Metasploit module exploits a stack-based buffer overflow in Apple QuickTime 7.6.6 by crafting a malformed SMIL URI, leading to remote code execution. The exploit uses SEH overwrites and heap spraying to achieve reliability.