Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Apple Quicktime/Darwin MP3 Broadcaster Filename Buffer Overrun Vulnerability

A vulnerability has been discovered in the Quicktime/Darwin MP3 Broadcaster. The problem occurs due to insufficient bounds checking on MP3 filenames. Processing an MP3 file with a name of excessive length may trigger the condition, effectively causing memory to be overwritten.

This issue may be exploitable by a remote attacker to execute arbitrary commands with the privileges of the user running the vulnerable application.







 

Privacy Statement
Copyright 2007, SecurityFocus