PT-2008-4440 · Microsoft · Windows Media Encoder 9 Series

Le Manh Tung

+1

·

Published

2008-09-10

·

Updated

2018-10-30

·

CVE-2008-3008

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Windows Media Encoder 9 Series
Description The issue is related to a stack-based buffer overflow in the WMEncProfileManager ActiveX control. This occurs when a long first argument is passed to the GetDetailsString method, allowing remote attackers to execute arbitrary code.
Recommendations For Windows Media Encoder 9 Series, apply the patch provided by Microsoft to fix the buffer overflow issue in the WMEncProfileManager ActiveX control.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-3008

Affected Products

Windows Media Encoder 9 Series