Summary
This host is installed with Microsoft DirectShow and is prone to remote code execution vulnerability.
This NVT has been replaced by NVT secpod_ms09-028.nasl (OID:1.3.6.1.4.1.25623.1.0.900588).
Impact
Attacker who successfully exploit this flaw could take complete control of an affected system.
Impact Level: System
Solution
Run Windows Update and update the listed hotfixes or download and update mentioned hotfixes in the advisory from the below link, http://www.microsoft.com/technet/security/bulletin/MS09-028.mspx
Workaround: Apply workaround steps mentioned in the reference link.
Insight
Microsoft DirectShow fails to handle supported QuickTime format files. This could allow code execution if a user opened a specially crafted QuickTime media file when a user is logged on with administrative user rights.
Affected
DirectX 7.0 8.1 and 9.0* on Microsoft Windows 2K
DirectX 9.0 on Microsoft Windows XP and 2K3
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2009-1537 -
CVSS Base Score: 9.3
AV:N/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities
- Microsoft 'hxvz.dll' ActiveX Control Memory Corruption Vulnerability (948881)
- Microsoft Distributed File System Remote Code Execution Vulnerabilities (2535512)
- Microsoft Data Analyzer ActiveX Control Vulnerability (978262)
- Microsoft Foundation Classes Could Allow Remote Code Execution Vulnerability (2387149)
- Microsoft .NET Framework Remote Code Execution Vulnerability (2745030)