VDB
GCVE-110-MAGEIA-2017-220
GCVE-110-MAGEIA-2017-220
Advisory Published
A DoS in quicktime_read_moov function in moov.c via acrafted mp4 file
was fixed (CVE-2017-9122).
An invalid memory read in lqt_frame_duration via a crafted mp4 file was
fixed (CVE-2017-9123).
A NULL pointer dereference in quicktime_match_32 via a crafted mp4 file
was fixed (CVE-2017-9124).
A DoS in lqt_frame_duration function in lqt_quicktime.c via crafted mp4
file was fixed (CVE-2017-9125).
A heap-based buffer overflow in quicktime_read_dref_table via a crafted
mp4 file was fixed (CVE-2017-9126).
A heap-based buffer overflow in quicktime_user_atoms_read_atom via a
crafted mp4 file was fixed (CVE-2017-9127).
A heap-based buffer over-read in quicktime_video_width via a crafted mp4
file was fixed (CVE-2017-9128).
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | libquicktime | 1.2.4-10.2.mga5 (unaffected), 0 (affected) | — |
Browse GCVE Records
73,873 records in the GCVE database · Updated July 20, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.