Skip to main content

Apple TV Data Processing Remote Code Execution Vulnerabilities

Last Update Date: 28 Jan 2011 Release Date: 14 Jul 2008 4695 Views

RISK: Medium Risk

Multiple vulnerabilities have been identified in Apple TV, which could be exploited by remote attackers to take complete control of an affected system. These issues are caused by buffer overflow and input validation errors when processing specially crafted movie files, QuickTime content or PICT images, which could be exploited by remote attackers to crash an affected application or execute arbitrary code by tricking a user into opening a malicious media file. These issues are related to : Apple QuickTime Multiple Vulnerabilities (11 Jun 2008) and Apple QuickTime Multiple Vulnerabilities (07 Apr 2008)


Impact

  • Remote Code Execution

System / Technologies affected

  • Apple TV versions prior to 2.1


Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

Upgrade to Apple TV version 2.1 :
http://www.apple.com/fr/appletv/


Vulnerability Identifier


Source


Related Link