The 2008 Pwnie Nominee For Best Client-Side Bug

QuickTime (CVE-2008-*)

Discovered by: everybody and their mom

No, this nomination is not for a vulnerability in Apple QuickTime, it is for QuickTime itself as a client-side vulnerability. A quick search of CVE entries yields 62 vulnerabilities in Apple QuickTime just in the last two years. The discoverer of the next QuickTime bug wins a free trip to the salad bar. Who would have thought that putting code originally written in the early nineties into a web browser would be a bad idea?

(CVE-2008-*)