
CVE-2017-2218
https://notcve.org/view.php?id=CVE-2017-2218
07 Jul 2017 — Untrusted search path vulnerability in Installer of QuickTime for Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. Una vulnerabilidad de tipo ruta de búsqueda no confiable en el instalador de QuickTime para Windows permite que un atacante consiga privilegios utilizando un archivo DLL troyano en un directorio no especificado. • https://jvn.jp/en/jp/JVN94771799/index.html • CWE-426: Untrusted Search Path •

CVE-2011-3428
https://notcve.org/view.php?id=CVE-2011-3428
24 Apr 2017 — Buffer overflow in QuickTime before 7.7.1 for Windows allows remote attackers to execute arbitrary code. Desbordamiento de búfer en QuickTime en versiones anteriores a 7.7.1 para Windows permite a atacantes remotos ejecutar código arbitrario • https://support.apple.com/en-us/HT5016 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2015-7085 – Apple Security Advisory 2016-01-07-1
https://notcve.org/view.php?id=CVE-2015-7085
08 Jan 2016 — Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file, a different vulnerability than CVE-2015-7086, CVE-2015-7087, CVE-2015-7088, CVE-2015-7089, CVE-2015-7090, CVE-2015-7091, CVE-2015-7092, and CVE-2015-7117. Apple QuickTime en versiones anteriores a 7.7.9 permite a atacantes remotos ejecutar código arbitrario o provocar una denegación de servicio (corrupción de memoria y caída de aplica... • http://lists.apple.com/archives/security-announce/2016/Jan/msg00000.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2015-7086 – Apple Security Advisory 2016-01-07-1
https://notcve.org/view.php?id=CVE-2015-7086
08 Jan 2016 — Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file, a different vulnerability than CVE-2015-7085, CVE-2015-7087, CVE-2015-7088, CVE-2015-7089, CVE-2015-7090, CVE-2015-7091, CVE-2015-7092, and CVE-2015-7117. Apple QuickTime en versiones anteriores a 7.7.9 permite a atacantes remotos ejecutar código arbitrario o provocar una denegación de servicio (corrupción de memoria y caída de la apl... • http://lists.apple.com/archives/security-announce/2016/Jan/msg00000.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2015-7087 – Apple Security Advisory 2016-01-07-1
https://notcve.org/view.php?id=CVE-2015-7087
08 Jan 2016 — Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file, a different vulnerability than CVE-2015-7085, CVE-2015-7086, CVE-2015-7088, CVE-2015-7089, CVE-2015-7090, CVE-2015-7091, CVE-2015-7092, and CVE-2015-7117. Apple QuickTime en versiones anteriores a 7.7.9 permite a atacantes remotos ejecutar código arbitrario o provocar una denegación de servicio (corrupción de memoria y caída de la apl... • http://lists.apple.com/archives/security-announce/2016/Jan/msg00000.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2015-7088 – Apple Security Advisory 2016-01-07-1
https://notcve.org/view.php?id=CVE-2015-7088
08 Jan 2016 — Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file, a different vulnerability than CVE-2015-7085, CVE-2015-7086, CVE-2015-7087, CVE-2015-7089, CVE-2015-7090, CVE-2015-7091, CVE-2015-7092, and CVE-2015-7117. Apple QuickTime en versiones anteriores a 7.7.9 permite a atacantes remotos ejecutar código arbitrario o provocar una denegación de servicio (corrupción de memoria y caída de la apl... • http://lists.apple.com/archives/security-announce/2016/Jan/msg00000.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2015-7089 – Apple Security Advisory 2016-01-07-1
https://notcve.org/view.php?id=CVE-2015-7089
08 Jan 2016 — Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file, a different vulnerability than CVE-2015-7085, CVE-2015-7086, CVE-2015-7087, CVE-2015-7088, CVE-2015-7090, CVE-2015-7091, CVE-2015-7092, and CVE-2015-7117. Apple QuickTime en versiones anteriores a 7.7.9 permite a atacantes remotos ejecutar código arbitrario o provocar una denegación de servicio (corrupción de memoria y caída de la apl... • http://lists.apple.com/archives/security-announce/2016/Jan/msg00000.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2015-7090 – Apple Security Advisory 2016-01-07-1
https://notcve.org/view.php?id=CVE-2015-7090
08 Jan 2016 — Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file, a different vulnerability than CVE-2015-7085, CVE-2015-7086, CVE-2015-7087, CVE-2015-7088, CVE-2015-7089, CVE-2015-7091, CVE-2015-7092, and CVE-2015-7117. Apple QuickTime en versiones anteriores a 7.7.9 permite a atacantes remotos ejecutar código arbitrario o provocar una denegación de servicio (corrupción de memoria y caída de la apl... • http://lists.apple.com/archives/security-announce/2016/Jan/msg00000.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2015-7091 – Apple Security Advisory 2016-01-07-1
https://notcve.org/view.php?id=CVE-2015-7091
08 Jan 2016 — Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file, a different vulnerability than CVE-2015-7085, CVE-2015-7086, CVE-2015-7087, CVE-2015-7088, CVE-2015-7089, CVE-2015-7090, CVE-2015-7092, and CVE-2015-7117. Apple QuickTime en versiones anteriores a 7.7.9 permite a atacantes remotos ejecutar código arbitrario o provocar una denegación de servicio (corrupción de memoria y caída de la apl... • http://lists.apple.com/archives/security-announce/2016/Jan/msg00000.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2015-7092 – Apple QuickTime ID3 Tag Heap Buffer Overflow Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2015-7092
08 Jan 2016 — Apple QuickTime before 7.7.9 allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow and application crash) via a crafted TXXX frame within an ID3 tag in MP3 data in a movie file, a different vulnerability than CVE-2015-7085, CVE-2015-7086, CVE-2015-7087, CVE-2015-7088, CVE-2015-7089, CVE-2015-7090, CVE-2015-7091, and CVE-2015-7117. Apple QuickTime en versiones anteriores a 7.7.9 permite a atacantes remotos ejecutar código arbitrario o provocar una denegaci... • http://lists.apple.com/archives/security-announce/2016/Jan/msg00000.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •