The QuickTime Movie Parser Filter in quartz.dll in DirectShow in Microsoft DirectX 7.0 up to and including 9.0c on Windows 2000 SP4, Windows XP SP2 and SP3, and Windows Server 2003 SP2 does not properly validate unspecified size fields in QuickTime media files, which allows remote malicious users to execute arbitrary code via a crafted file, aka "DirectX Size Validation Vulnerability."
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
microsoft directx 7.0 |
||
microsoft windows_2000 - |
||
microsoft directx 8.1 |
||
microsoft directx 9.0 |
||
microsoft windows_xp - |
||
microsoft windows_server_2003 |