9.3
CVSSv2

CVE-2013-3174

Published: 10/07/2013 Updated: 07/12/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

DirectShow in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, and Windows Server 2012 allows remote malicious users to execute arbitrary code via a crafted GIF file, aka "DirectShow Arbitrary Memory Overwrite Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows server 2008

microsoft windows xp -

microsoft windows 8 -

microsoft windows xp

microsoft windows 7

microsoft windows server 2003

microsoft windows vista

microsoft windows server 2012 -

Exploits

Introduction: The Microsoft DirectShow application programming interface (API) is a media-streaming architecture for Microsoft Windows Using DirectShow, your applications can perform high-quality video and audio playback or capture Overview: DirectShow in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows S ...

Recent Articles

Microsoft Updates July 2013
Securelist • Kurt Baumgartner • 09 Jul 2013

As promised in Microsoft’s July Advance Notification, Microsoft ships seven security bulletins this month (MS13-052 – MS13-058). At least 34 CVE are being patched. Six of the Security Bulletins are rated “critical” due to remote code execution issues. The vulnerabilities being fixed this month enable RCE across all versions of Windows operating systems, but most of these serious flaws have all been privately reported and there is no indication that they are publicly known or exploited ye...