Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2009-4309
Description:Heap-based buffer overflow in the Intel Indeo41 codec for Windows Media Player in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via a large size value in a movi record in an IV41 stream in a media file, as demonstrated by an AVI file.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2009-4309
BugTraq ID: 37251
http://www.securityfocus.com/bid/37251
Bugtraq: 20091208 ZDI-09-089: Microsoft Windows Intel Indeo Codec Parsing Heap Overflow Vulnerability (Google Search)
http://www.securityfocus.com/archive/1/508324/100/0/threaded
http://zerodayinitiative.com/advisories/ZDI-09-089/
Microsoft Knowledge Base article: 954157
http://support.microsoft.com/kb/954157
Microsoft Knowledge Base article: 955759
http://support.microsoft.com/kb/955759
Microsoft Knowledge Base article: 976138
http://support.microsoft.com/kb/976138
http://www.osvdb.org/60855
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12188
http://securitytracker.com/id?1023302
http://secunia.com/advisories/37592
http://www.vupen.com/english/advisories/2009/3440
XForce ISS Database: ms-ie-content-code-execution(54645)
https://exchange.xforce.ibmcloud.com/vulnerabilities/54645
XForce ISS Database: ms-ie-indeo41-bo(54642)
https://exchange.xforce.ibmcloud.com/vulnerabilities/54642




© 1998-2025 E-Soft Inc. All rights reserved.