9.3
CVSSv2

CVE-2009-2498

Published: 08/09/2009 Updated: 07/12/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Microsoft Windows Media Format Runtime 9.0, 9.5, and 11 and Windows Media Services 9.1 and 2008 do not properly parse malformed headers in Advanced Systems Format (ASF) files, which allows remote malicious users to execute arbitrary code via a crafted (1) .asf, (2) .wmv, or (3) .wma file, aka "Windows Media Header Parsing Invalid Free Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows_media_format_runtime 9.0

microsoft windows_2000 -

microsoft windows_xp -

microsoft windows_media_format_runtime 9.5

microsoft windows_server_2003

microsoft windows_xp

microsoft windows_media_format_runtime 11

microsoft windows_server_2008 -

microsoft windows_vista

microsoft windows_vista -

microsoft windows_media_services 9.1

microsoft windows_media_services 2008

microsoft media_foundation_sdk