HTTP: Apple QuickTime Pictureviewer jp2 File Denial of Service

This signature detects attempts to exploit a known vulnerability against Apple Quicktime. A successful attack can result in a denial-of-service condition.

Extended Description

Apple QuickTime Pictureviewer is prone to a denial-of-service vulnerability. Successful exploits may allow attackers to crash the affected application, denying service to legitimate users. Given the nature of this issue, attackers may also be able to run arbitrary code, but this has not been confirmed. QuickTime Pictureviewer 7.6.6 is vulnerable; other versions may also be affected.

Affected Products

Apple quicktime_pictureviewer

References

BugTraq: 45609

CVE: CVE-2010-3788

Short Name
HTTP:STC:DL:APPLE-QT-JP2-DOS
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Apple CVE-2010-3788 Denial File Pictureviewer QuickTime Service bid:45609 jp2 of
Release Date
12/17/2012
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Apple

CVSS Score

6.8

Found a potential security threat?