CVE-2007-2388
Published May 29, 2007
Last updated 13 years ago
Overview
- Description
- Apple QuickTime for Java 7.1.6 on Mac OS X and Windows does not properly restrict QTObject subclassing, which allows remote attackers to execute arbitrary code via a web page containing a user-defined class that accesses unsafe functions that can be leveraged to write to arbitrary memory locations.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 9.3
- Impact score
- 10
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-264
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "0FF5999A-9D12-4CDD-8DE9-A89C10B2D574" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.0:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "99C273D1-ADFE-4B4C-B543-7B9CA741A117" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.0.1:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "0BC31B69-3DE1-4CF3-ADC9-CA0BF1714CBF" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.0.2:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "77CC671C-6D89-4279-86F7-DDE1D4D9A0CA" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.0.3:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8E4B77F6-E71C-45ED-96CC-7872AD2FCBF8" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.0.4:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "066ABC3B-B395-42D2-95C0-5B810F91A6F0" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.1:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "01BC19FC-6E03-4000-AE4B-232E47FA76F2" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.1.1:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "421FC2DD-0CF7-44A2-A63C-5221689E2363" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.1.2:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "0F8B70BC-42B7-453A-B506-7BE69D49A4B5" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.1.3:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "FAAC6EA5-DCB2-4A50-A8BC-25CC43FAEF9B" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.1.4:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "CA32F7D8-02F8-4CFE-B193-2888807BC4D6" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.1.5:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "A9DCDE70-07DA-4F0B-805F-6BA03D410CD6" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.2:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "CDCF4FB3-F781-46D5-BEE7-485B3DC78B83" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.2.1:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "AE52A344-8B07-480D-A57F-B1F6E6574F3B" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.2.2:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "56CC0444-570C-4BB5-B53A-C5CA0BD87935" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.2.3:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "62E3EED7-FE30-4620-B40B-9CC49B77408A" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.2.4:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "5AFD8BC6-4893-4D9D-A26E-27AAC864F94B" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.2.5:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "9BD1F9A1-5ADB-451D-9525-D545E42D2B8F" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.2.6:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "D7A24978-2891-425C-ACF6-E8F5C839C54A" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.2.7:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "9B20E130-6078-4336-B614-273C27142B46" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.2.8:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "AB461678-560D-436E-A3AE-9E1E16DB0412" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.3:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BFDADE04-29F0-446B-824B-0518880CF0A0" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.3.1:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "ED9BE602-A740-4CF7-9CAF-59061B16AB31" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.3.2:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "33E698C1-C313-40E6-BAF9-7C8F9CF02484" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.3.3:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BF2D00AC-FA2A-4C39-B796-DC19072862CF" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.3.4:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "421079DA-B605-4E05-9454-C30CF7631CF4" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.3.5:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "93B734BA-3435-40A9-B22B-5D56CEB865A7" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.3.6:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "C4B57B3E-B1B2-4F13-99D3-4F9DB3C07B5E" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.3.7:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "30897327-44DD-4D6C-B8B6-2D66C44EA55D" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.3.8:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "B79D8F73-2E78-4A67-96BB-21AD9BCB0094" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.3.9:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "DC6931D5-DE7E-41F6-ADDC-AB5A8A167F69" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.4:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "0760FDDB-38D3-4263-9B4D-1AF5E613A4F9" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.4.1:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "AFD4DE58-46C7-4E69-BF36-C5FD768B8248" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.4.2:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "CF824694-52DE-44E3-ACAD-60B2A84CD3CE" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.4.3:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "B73A0891-A37A-4E0D-AA73-B18BFD6B1447" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.4.4:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "26AC38AB-D689-4B2B-9DAE-F03F4DFD15BE" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.4.5:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "0C580935-0091-4163-B747-750FB7686973" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.4.6:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BB0F2132-8431-4CEF-9A3D-A69425E3834E" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.4.7:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8719F3C4-F1DE-49B5-9301-22414A2B6F9C" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.4.8:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "09ED46A8-1739-411C-8807-2A416BDB6DFE" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.4.9:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "786BB737-EA99-4EC6-B742-0C35BF2453F9" }, { "criteria": "cpe:2.3:o:microsoft:all_windows:*:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "3AB4B29F-4C60-48A0-8F58-BCBDC58B697E" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:apple:quicktime:7.1.6:*:java:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CF6369C7-DA45-4E7D-A258-FDCA0EEDD842" } ], "operator": "OR" } ], "operator": "AND" } ]