Security Advisory
CVE-2009-0006
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Integer signedness error in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a Cinepak encoded movie file with a crafted MDAT atom that triggers a heap-based buffer overflow.