CVE-2008-0234
Buffer overflow in Apple Quicktime Player 7.3.1.70 and other versions before 7.4.1, when RTSP tunneling is enabled, allows remote attackers to execute arbitrary code via a long Reason-Phrase response to an rtsp:// request, as demonstrated using a 404 error message.
Date published : 2008-01-10
http://lists.apple.com/archives/security-announce/2008/Feb/msg00001.html
http://lists.apple.com/archives/security-announce/2008//Jul/msg00000.html