DirectX Size Validation Vulnerability
Publish Date: 21 luglio 2015
Gravità: : Critico
Identificatori CVE: CVE-2009-1539
Data notifica: 21 luglio 2015
Descrizione
The QuickTime Movie Parser Filter in quartz.dll in DirectShow in Microsoft DirectX 7.0 through 9.0c on Windows 2000 SP4, Windows XP SP2 and SP3, and Windows Server 2003 SP2 does not properly validate unspecified size fields in QuickTime media files, which allows remote attackers to execute arbitrary code via a crafted file, aka "DirectX Size Validation Vulnerability."
Informazioni esposizione:
Apply associated Trend Micro DPI Rules.
Soluzioni
Trend Micro Deep Security DPI Rule Number: 1003620
Trend Micro Deep Security DPI Rule Name: 1003620 - DirectX Size Validation Vulnerability
Software e versione interessati:
- microsoft directx 7.0
- microsoft directx 8.1
- microsoft directx 9.0
- microsoft windows_2000
- microsoft windows_server_2003
- microsoft windows_xp