Vulnerability Description
Unspecified vulnerability in Apple QuickTime 7.2 on Windows XP allows remote attackers to execute arbitrary code via unknown attack vectors, probably a different vulnerability than CVE-2007-6166. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release advisories with actionable information. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine. However, the organization has stated that this is different than CVE-2007-6166.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | Quicktime | 7.2 |
References
- http://wabisabilabi.blogspot.com/2007/11/quicktime-zeroday-vulnerability-still.h
- http://wslabi.com/wabisabilabi/showBidInfo.do?code=ZD-00000185
- http://www.securityfocus.com/bid/26682
- http://www.securitytracker.com/id?1019039
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38852
- http://wabisabilabi.blogspot.com/2007/11/quicktime-zeroday-vulnerability-still.h
- http://wslabi.com/wabisabilabi/showBidInfo.do?code=ZD-00000185
- http://www.securityfocus.com/bid/26682
- http://www.securitytracker.com/id?1019039
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38852
FAQ
What is CVE-2007-6238?
CVE-2007-6238 is a vulnerability with a CVSS score of 10.0 (HIGH). Unspecified vulnerability in Apple QuickTime 7.2 on Windows XP allows remote attackers to execute arbitrary code via unknown attack vectors, probably a different vulnerability than CVE-2007-6166. NOT...
How severe is CVE-2007-6238?
CVE-2007-6238 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-6238?
Check the references section above for vendor advisories and patch information. Affected products include: Apple Quicktime.