Apple QuickTime Atom Processing Heap Corruption Remote Code Execution Vulnerability
Publish Date: 31 de мая de 2016
Severity: : Critical
Advisory Date: 31 de мая de 2016
DESCRIPTION
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Apple QuickTime. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. An attacker could leverage this to execute arbitrary code under the context of the QuickTime player.
INFORMATION EXPOSURE
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1007595