← Back

Quicktime

quicktime

Vendor: Apple • 246 CVEs

CVEs (246)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Apple
1Quicktime
Apr 29, 2026
Nov 9, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Targa image.
1Apple
1Quicktime
Apr 29, 2026
Nov 9, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Use-after-free vulnerability in the Clear method in the ActiveX control in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified v...Show more
Use-after-free vulnerability in the Clear method in the ActiveX control in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.Show less
1Apple
1Quicktime
Apr 29, 2026
Nov 9, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in the plugin in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MIME type.
1Apple
1Quicktime
Apr 29, 2026
Nov 9, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Multiple buffer overflows in Apple QuickTime before 7.7.3 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted style element in a QuickTime TeXML file.
1Apple
1Quicktime
Apr 29, 2026
Nov 9, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Use-after-free vulnerability in the plugin in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an HTML document with a crafted _qtactivex...Show more
Use-after-free vulnerability in the plugin in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an HTML document with a crafted _qtactivex_ parameter in an OBJECT element.Show less
1Apple
1Quicktime
Apr 29, 2026
Nov 9, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted REGION record in a PICT file.
1Apple
1Quicktime
Apr 29, 2026
May 16, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Apple QuickTime before 7.7.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted .pict file.
1Apple
1Quicktime
Apr 29, 2026
May 16, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Integer overflow in Apple QuickTime before 7.7.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted sean atom in a movie file.
1Apple
1Quicktime
Apr 29, 2026
May 16, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in Apple QuickTime before 7.7.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with Sorenson encoding.
1Apple
1Quicktime
Apr 29, 2026
May 16, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in Apple QuickTime before 7.7.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with RLE encoding.
1Apple
1Quicktime
Apr 29, 2026
May 16, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Integer signedness error in Apple QuickTime before 7.7.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted QTVR movie file.
1Apple
1Quicktime
Apr 29, 2026
May 16, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Stack-based buffer overflow in the plugin in Apple QuickTime before 7.7.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted QTMovie object.
1Apple
1Quicktime
Apr 29, 2026
May 16, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Heap-based buffer overflow in Apple QuickTime before 7.7.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with H.264 encoding.
1Apple
1Quicktime
Apr 29, 2026
May 16, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Heap-based buffer overflow in Apple QuickTime before 7.7.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted text track in a movie file.
1Apple
1Quicktime
Apr 29, 2026
May 16, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Multiple stack-based buffer overflows in Apple QuickTime before 7.7.2 on Windows allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted TeXML file.
1Apple
1Quicktime
Apr 29, 2026
May 16, 2012
N/A· v4
N/A· v3
9.3 HIGH· v2
Stack-based buffer overflow in Apple QuickTime before 7.7.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted pathname for a file.
1Apple
1Quicktime
Apr 29, 2026
Oct 28, 2011
N/A· v4
N/A· v3
9.3 HIGH· v2
Apple QuickTime before 7.7.1 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted TKHD atoms in a QuickTime movie file.
1Apple
1Quicktime
Apr 29, 2026
Oct 28, 2011
N/A· v4
N/A· v3
9.3 HIGH· v2
Integer overflow in Apple QuickTime before 7.7.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with JPEG2000 encoding.
1Apple
1Quicktime
Apr 29, 2026
Oct 28, 2011
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in Apple QuickTime before 7.7.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with FLC encoding.
1Apple
1Quicktime
Apr 29, 2026
Oct 28, 2011
N/A· v4
N/A· v3
9.3 HIGH· v2
Integer signedness error in Apple QuickTime before 7.7.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted font table in a QuickTime movie file.