← Back

CVE-2008-3635

nvd nist
Published: Sep 11, 2008Modified: Apr 23, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Stack-based buffer overflow in QuickTimeInternetExtras.qtx in an unspecified third-party Indeo v3.2 (aka IV32) codec for QuickTime, when used with Apple QuickTime before 7.5.5 on Windows, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file.

Affected (21)

Products: Apple: Quicktime · Intel: Indeo
1 product
Quicktime
1 product
Indeo
Configuration A
21 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
Apple
Up to 7.5
Version 7.0.1
Version 7.0.2
Version 7.0.3
Version 7.0.4
Version 7.0
Version 7.1.1
Version 7.1.2
Version 7.1.3
Version 7.1.4
Version 7.1.5
Version 7.1.6
Version 7.1
Version 7.2
Version 7.3.1.70
Version 7.3.1
Version 7.3
Version 7.4.1
Version 7.4.5
Version 7.4
Version 3.2
Running on/withPlatform Versions
Microsoft
Windows Nt
Version xp sp3
Microsoft
Windows Vista
All versions
Microsoft
Windows Xp
All versions

References (16)

Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.