VDB

GCVE-110-MAGEIA-2017-220

GCVE-110-MAGEIA-2017-220
Advisory Published
Vulnetix · Advisory published July 25, 2017
A DoS in quicktime_read_moov function in moov.c via acrafted mp4 file was fixed (CVE-2017-9122). An invalid memory read in lqt_frame_duration via a crafted mp4 file was fixed (CVE-2017-9123). A NULL pointer dereference in quicktime_match_32 via a crafted mp4 file was fixed (CVE-2017-9124). A DoS in lqt_frame_duration function in lqt_quicktime.c via crafted mp4 file was fixed (CVE-2017-9125). A heap-based buffer overflow in quicktime_read_dref_table via a crafted mp4 file was fixed (CVE-2017-9126). A heap-based buffer overflow in quicktime_user_atoms_read_atom via a crafted mp4 file was fixed (CVE-2017-9127). A heap-based buffer over-read in quicktime_video_width via a crafted mp4 file was fixed (CVE-2017-9128).

Affected Products

VendorProductVersionsPlatforms
Mageialibquicktime1.2.4-10.2.mga5 (unaffected), 0 (affected)

Browse GCVE Records

73,873 records in the GCVE database · Updated July 20, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›