PT-2009-6436 · Intel+1 · Indeo Codec+3

Published

2009-12-13

·

Updated

2017-09-19

·

CVE-2009-4312

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Windows versions 2000 SP4, XP SP2, XP SP3, Server 2003 SP2
Description The issue allows remote attackers to execute arbitrary code via crafted media content. This is related to an unspecified vulnerability in the Indeo codec.
Recommendations For Windows 2000 SP4, update to a version that includes the fix for this issue. For Windows XP SP2 and SP3, apply the necessary patch to resolve the vulnerability. For Windows Server 2003 SP2, ensure that the relevant security update is installed to mitigate the risk.

Fix

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-4312

Affected Products

Indeo Codec
Windows 2000
Windows Server 2003
Windows Xp