Apple QuickTime Atom Processing Heap Corruption Remote Code Execution Vulnerability

  Severity: CRITICAL
  Advisory Date: MAY 31, 2016

  DESCRIPTION

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Apple QuickTime. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. An attacker could leverage this to execute arbitrary code under the context of the QuickTime player.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1007595