2010-11-16

Apple QuickTime, Apple Mac OS X, Apple Mac OS X Server

ソフト名:Apple QuickTime 7.6.6/7.6.8, Apple Mac OS X 10.5.8~10.6.4, Apple Mac OS X Server 10.5.8~10.6.4
回避策:Apple Security Update 2010-007または,アップデートにて対応
脆弱性:バッファオーバーフロー, リモートコード実行, XSS, 機密情報の奪取, セキュリティ制限の回避, アプリケーションのクラッシュ, DoS攻撃, メモリ破壊, 認証資格情報の奪取
ソース:
http://support.apple.com/kb/HT4435
http://www.securityfocus.com/bid/44778
http://www.securityfocus.com/bid/44785
http://www.securityfocus.com/bid/44787
http://www.securityfocus.com/bid/44789
http://www.securityfocus.com/bid/44790
http://www.securityfocus.com/bid/44792
http://www.securityfocus.com/bid/44794
http://www.securityfocus.com/bid/44795
http://www.securityfocus.com/bid/44796
http://www.securityfocus.com/bid/44798
http://www.securityfocus.com/bid/44814
http://www.securityfocus.com/bid/44828
http://www.securityfocus.com/bid/44829
http://www.securityfocus.com/bid/44831
http://www.securityfocus.com/bid/44834
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1378
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1803
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3787
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3788
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3789
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3790
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3791
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3792
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3793
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3794
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3795
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3796
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3797
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3798
http://secunia.com/advisories/39259
http://secunia.com/advisories/42151
http://www.vupen.com/english/advisories/2010/2958
CVE:CVE-2010-1378, CVE-2010-1803, CVE-2010-3787, CVE-2010-3788, CVE-2010-3789, CVE-2010-3790, CVE-2010-3791, CVE-2010-3792, CVE-2010-3793, CVE-2010-3794, CVE-2010-3795, CVE-2010-3796, CVE-2010-3797, CVE-2010-3798
危険性:High Risk

0 件のコメント:

コメントを投稿