CVE Vulnerabilities

CVE-2009-1546

Published: Aug 12, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
8.5 HIGH
AV:N/AC:M/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Integer overflow in Avifil32.dll in the Windows Media file handling functionality in Microsoft Windows allows remote attackers to execute arbitrary code on a Windows 2000 SP4 system via a crafted AVI file, or cause a denial of service on a Windows XP SP2 or SP3, Server 2003 SP2, Vista Gold, SP1, or SP2, or Server 2008 Gold or SP2 system via a crafted AVI file, aka AVI Integer Overflow Vulnerability.

Affected Software

NameVendorStart VersionEnd Version
Windows_2003_serverMicrosoftsp2 (including)sp2 (including)
Windows_server_2008Microsoft**
Windows_server_2008Microsoft- (including)- (including)
Windows_server_2008Microsoft–sp2 (including)–sp2 (including)
Windows_vistaMicrosoft**
Windows_vistaMicrosoft- (including)- (including)
Windows_xpMicrosoft**
Windows_xpMicrosoft–sp2 (including)–sp2 (including)
Windows_xpMicrosoft–sp3 (including)–sp3 (including)

References