// For flags

CVE-2010-1879

 

Severity Score

9.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Unspecified vulnerability in Quartz.dll for DirectShow; Windows Media Format Runtime 9, 9.5, and 11; Media Encoder 9; and the Asycfilt.dll COM component allows remote attackers to execute arbitrary code via a media file with crafted compression data, aka "Media Decompression Vulnerability."

Vulnerabilidad no especificada en Quartz.dll para DirectShow, Windows Media Format Runtime v9, v9.5 y v11; Media Encoder v9, y el componente COM Asycfilt.dll permite a atacantes remotos ejecutar código a su elección a través de un archivo multimedia con datos de compresión manipulados, también conocido como "Vulnerabilidad de descompresión Multimedia".

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2010-05-11 CVE Reserved
  • 2010-06-08 CVE Published
  • 2024-08-07 CVE Updated
  • 2024-10-25 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-94: Improper Control of Generation of Code ('Code Injection')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Microsoft
Search vendor "Microsoft"
Directx
Search vendor "Microsoft" for product "Directx"
9.0
Search vendor "Microsoft" for product "Directx" and version "9.0"
-
Affected
Microsoft
Search vendor "Microsoft"
Directx
Search vendor "Microsoft" for product "Directx"
9.0a
Search vendor "Microsoft" for product "Directx" and version "9.0a"
-
Affected
Microsoft
Search vendor "Microsoft"
Directx
Search vendor "Microsoft" for product "Directx"
9.0b
Search vendor "Microsoft" for product "Directx" and version "9.0b"
-
Affected
Microsoft
Search vendor "Microsoft"
Directx
Search vendor "Microsoft" for product "Directx"
9.0c
Search vendor "Microsoft" for product "Directx" and version "9.0c"
-
Affected
Microsoft
Search vendor "Microsoft"
Windows Media Format Runtime
Search vendor "Microsoft" for product "Windows Media Format Runtime"
9
Search vendor "Microsoft" for product "Windows Media Format Runtime" and version "9"
-
Affected
Microsoft
Search vendor "Microsoft"
Windows Media Format Runtime
Search vendor "Microsoft" for product "Windows Media Format Runtime"
9.5
Search vendor "Microsoft" for product "Windows Media Format Runtime" and version "9.5"
-
Affected
Microsoft
Search vendor "Microsoft"
Windows Media Format Runtime
Search vendor "Microsoft" for product "Windows Media Format Runtime"
9.5
Search vendor "Microsoft" for product "Windows Media Format Runtime" and version "9.5"
x64
Affected
Microsoft
Search vendor "Microsoft"
Windows Media Format Runtime
Search vendor "Microsoft" for product "Windows Media Format Runtime"
11
Search vendor "Microsoft" for product "Windows Media Format Runtime" and version "11"
-
Affected
Microsoft
Search vendor "Microsoft"
Windows Media Encoder
Search vendor "Microsoft" for product "Windows Media Encoder"
9
Search vendor "Microsoft" for product "Windows Media Encoder" and version "9"
x64
Affected
Microsoft
Search vendor "Microsoft"
Windows Media Encoder
Search vendor "Microsoft" for product "Windows Media Encoder"
9
Search vendor "Microsoft" for product "Windows Media Encoder" and version "9"
x86
Affected