Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r85w-v686-f8j6

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Use-after-free vulnerability in DirectShow in Microsoft DirectX 8.1 and 9.0 allows remote attackers to execute arbitrary code via an MJPEG file or video stream with a malformed Huffman table, which triggers an exception that frees heap memory that is later accessed, aka "MJPEG Decompression Vulnerability."

Use-after-free vulnerability in DirectShow in Microsoft DirectX 8.1 and 9.0 allows remote attackers to execute arbitrary code via an MJPEG file or video stream with a malformed Huffman table, which triggers an exception that frees heap memory that is later accessed, aka "MJPEG Decompression Vulnerability."

EPSS

Процентиль: 98%
0.61578
Средний

Дефекты

CWE-94

Связанные уязвимости

nvd
почти 17 лет назад

Use-after-free vulnerability in DirectShow in Microsoft DirectX 8.1 and 9.0 allows remote attackers to execute arbitrary code via an MJPEG file or video stream with a malformed Huffman table, which triggers an exception that frees heap memory that is later accessed, aka "MJPEG Decompression Vulnerability."

EPSS

Процентиль: 98%
0.61578
Средний

Дефекты

CWE-94