CVE-2009-2499
기본정보
  • 공개일 : 2009-09-08
  • 변경일 : 2009-11-17
  • 위험도 : 낮음
  • 공격 범위 : 사용자가 공격자에게 접근해야 공격 가능, 인터넷
  • 피해 유형 : 무결성 훼손, 계정 탈취 (관리자 계정), 기밀 유출, 가용성 침해
CVSS 평가 위험도: 8.5 (영향도: 10.0 익스플로잇: 6.8 )
설명

Microsoft Windows Media Format Runtime 9.0, 9.5, and 11; and Microsoft Media Foundation on Windows Vista Gold, SP1, and SP2 and Server 2008; allows remote attackers to execute arbitrary code via an MP3 file with crafted metadata that triggers memory corruption, aka "Windows Media Playback Memory Corruption Vulnerability."

참조
취약 소프트웨어
  • Microsoft windows_xp - sp3
  • Microsoft windows_xp - sp2
  • Microsoft windows_xp sp2:professional_x64
  • Microsoft windows_xp sp2
  • Microsoft windows_vista - sp2
  • Microsoft windows_vista - sp1
  • Microsoft windows_vista - -:x64
  • Microsoft windows_vista - -
  • Microsoft windows_vista sp2:x64
  • Microsoft windows_vista sp2
  • Microsoft windows_vista sp1:x64
  • Microsoft windows_vista sp1
  • Microsoft windows_vista :x64
  • Microsoft windows_server_2008 - sp2:x64
  • Microsoft windows_server_2008 - sp2:x32
  • Microsoft windows_server_2008 - sp2
  • Microsoft windows_server_2008 - -:x32
  • Microsoft windows_server_2008 - -:x64
  • Microsoft windows_server_2008 - -
  • Microsoft windows_server_2003 sp2:x64
  • Microsoft windows_server_2003 sp2
  • Microsoft windows_server_2003 :x64
  • Microsoft windows_2000 - sp4
  • Microsoft windows_media_services 9.1
  • Microsoft windows_media_services 2008
  • Microsoft windows_media_foundation -
  • Microsoft windows_media_format_runtime 9.5 :x64
  • Microsoft windows_media_format_runtime 9.5
  • Microsoft windows_media_format_runtime 9.0
  • Microsoft windows_media_format_runtime 11