CVE-2006-2238

high
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

Heap-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted BMP file that triggers the overflow in the ReadBMP function. NOTE: this issue was originally included as item 3 in CVE-2006-1983, but it has been given a separate identifier because it is a distinct issue.

References

http://lists.apple.com/archives/security-announce/2006/May/msg00002.html

http://secunia.com/advisories/20069

http://securitytracker.com/id?1016067

http://www.osvdb.org/24820

http://www.securityfocus.com/bid/17953

http://www.security-protocols.com/sp-x27-advisory.php

http://www.us-cert.gov/cas/techalerts/TA06-132B.html

http://www.vupen.com/english/advisories/2006/1778

https://exchange.xforce.ibmcloud.com/vulnerabilities/26402

Details

Source: MITRE

Published: 2006-05-12

Updated: 2017-07-20

Type: CWE-119

Risk Information

CVSS v2

Base Score: 7.5

Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 10

Severity: HIGH

Tenable Plugins

View all (5 total)

IDNameProductFamilySeverity
21556QuickTime < 7.1 Multiple Vulnerabilities (Windows)NessusWindows
high
21554Quicktime < 7.1 Multiple Vulnerabilities (Mac OS X)NessusMacOS X Local Security Checks
high
3617Mac OS X Multiple Vulnerabilities (Security Update 2006-003)Nessus Network MonitorOperating System Detection
medium
3616Quicktime < 7.1 on Mac OS X Multiple VulnerabilitiesNessus Network MonitorWeb Clients
high
801197Quicktime < 7.1 on Mac OS X Multiple VulnerabilitiesLog Correlation EngineWeb Clients
high