Remote Code Execution Flaw in QT Media Foundation on Apple OS X
CVE-2014-1391

Currently unrated

Key Information:

Vendor

Apple

Vendor
CVE Published:
19 September 2014

What is CVE-2014-1391?

A vulnerability exists in QT Media Foundation on Apple OS X prior to version 10.9.5, allowing remote attackers to exploit crafted movie files. Through specially encoded RLE (Run-Length Encoding) content, attackers can cause memory corruption, leading to denial of service events including application crashes, or potentially enabling the execution of arbitrary code on the affected systems.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.