Home page logo

bugtraq logo Bugtraq mailing list archives

DirectShow Arbitrary Memory Overwrite Vulnerability ms13-056
From: Andres Gomez Ramirez <andres.gomez () cern ch>
Date: Sun, 21 Jul 2013 21:02:07 +0000


The Microsoft DirectShow application programming interface (API) is a media-streaming architecture for Microsoft 
Windows. Using DirectShow, your applications can perform high-quality video and audio playback or capture.  


DirectShow in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and 
R2 SP1, Windows 7 SP1, Windows 8, and Windows Server 2012 allows remote attackers to execute arbitrary code via a 
crafted GIF file, aka "DirectShow Arbitrary Memory Overwrite Vulnerability." 


    * http://kuronosec.blogspot.de/2013/07/directshow-arbitrary-memory-overwrite.html
    * https://technet.microsoft.com/en-us/security/bulletin/ms13-056 
    * http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-3174



  By Date           By Thread  

Current thread:
  • DirectShow Arbitrary Memory Overwrite Vulnerability ms13-056 Andres Gomez Ramirez (Jul 22)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]