Update Protection against Apple QuickTime PICT Image Stack Overflow Vulnerability
| Check Point Reference: | CPAI-2007-131 | |
| Date Published: | ||
| Severity: | ||
| Source: | Secunia Advisory: SA27523 | |
| Industry Reference(s): | CVE-2007-4672 | |
| Protection Provided by: |
VPN-1
|
|
| Who is Vulnerable? Apple Computer QuickTime prior to 7.3 | ||
| Vulnerability Description A buffer overflow vulnerability has been reported in Apple QuickTime. Apple QuickTime is a multimedia player that supports a wide range of media formats. A remote attacker can exploit this vulnerability via a specially crafted PICT file - an image file format that can be processed by the QuickTime. Successful exploitation of the vulnerability allows execution of arbitrary code on a vulnerable system. |
||
|
Update/Patch Available Update Apple QuickTime to version 7.3: QuickTime 7.3 for Windows: QuickTime 7.3 for Leopard: QuickTime 7.3 for Tiger: QuickTime 7.3 for Panther: |
|
|
Vulnerability Details The vulnerability is due to boundary errors in Apple QuickTime that fails to properly handle crafted PICT image files. A remote attacker could trigger this flaw via a specially crafted PICT file. Successful exploitation allows execution of arbitrary code once a malformed PICT file is being loaded on a vulnerable system. |
Protection Overview
By enabling this protection, SmartDefense will detect and block the transferring of malformed PICT files over HTTP.
In order for the protection to be activated, update your VPN-1/InterSpect product to the latest SmartDefense update. For information on how to update SmartDefense, go to SBP-2006-05, Protection tab and select the version of your choice.
To configure the defense, select your product from the list below and follow the related protection steps.
Additional Information
The update released on November 19, 2007 includes the following protections:
Microsoft Windows ShellExecute and IE 7 Code Execution Vulnerability (CPAI-2007-130)
Apple QuickTime PICT Image Stack Overflow Vulnerability (CPAI-2007-131)