Lucene search

K
nvd[email protected]NVD:CVE-2010-1879
HistoryJun 08, 2010 - 10:30 p.m.

CVE-2010-1879

2010-06-0822:30:01
CWE-94
web.nvd.nist.gov
1

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.5 High

AI Score

Confidence

Low

0.922 High

EPSS

Percentile

99.0%

Unspecified vulnerability in Quartz.dll for DirectShow; Windows Media Format Runtime 9, 9.5, and 11; Media Encoder 9; and the Asycfilt.dll COM component allows remote attackers to execute arbitrary code via a media file with crafted compression data, aka β€œMedia Decompression Vulnerability.”

Affected configurations

NVD
Node
microsoftdirectxMatch9.0
OR
microsoftdirectxMatch9.0a
OR
microsoftdirectxMatch9.0b
OR
microsoftdirectxMatch9.0c
Node
microsoftwindows_media_format_runtimeMatch9
OR
microsoftwindows_media_format_runtimeMatch9.5
OR
microsoftwindows_media_format_runtimeMatch9.5x64
OR
microsoftwindows_media_format_runtimeMatch11
Node
microsoftwindows_media_encoderMatch9-x64
OR
microsoftwindows_media_encoderMatch9-x86

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.5 High

AI Score

Confidence

Low

0.922 High

EPSS

Percentile

99.0%