CVE-2009-4309
Last modified
CVE-2009-4309 is a vulnerability of currently unknown severity. Heap-based buffer overflow in the Intel Indeo41 codec for Windows Media Player in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via a large size value in a movi record in an IV41 stream in a media file, as demonstrated by an AVI file.. EPSS estimates a 24.11% chance of exploitation in the next 30 days.
Description
Heap-based buffer overflow in the Intel Indeo41 codec for Windows Media Player in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via a large size value in a movi record in an IV41 stream in a media file, as demonstrated by an AVI file.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Microsoft | Windows Media Player | All versions | — |
| Microsoft | Windows 2000 | All versions | Sp4 |
| Microsoft | Windows 2003 Server | All versions | Sp2 |
| Microsoft | Windows Xp | All versions | Sp3 |
References
- http://secunia.com/advisories/37592Vendor Advisory
- http://support.microsoft.com/kb/954157Patch, Vendor Advisory
- http://support.microsoft.com/kb/955759Patch, Vendor Advisory
- http://support.microsoft.com/kb/976138Patch, Vendor Advisory
- http://www.microsoft.com/technet/security/advisory/954157.mspxPatch, Vendor Advisory
- http://www.vupen.com/english/advisories/2009/3440Vendor Advisory
- http://secunia.com/advisories/37592Vendor Advisory
- http://support.microsoft.com/kb/954157Patch, Vendor Advisory
- http://support.microsoft.com/kb/955759Patch, Vendor Advisory
- http://support.microsoft.com/kb/976138Patch, Vendor Advisory
- http://www.microsoft.com/technet/security/advisory/954157.mspxPatch, Vendor Advisory
- http://www.vupen.com/english/advisories/2009/3440Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2009-4309?
How severe is CVE-2009-4309?
How do I fix CVE-2009-4309?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2009
- CVE-2009-4303Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores (1) pas…
- CVE-2009-4304Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not use a…
- CVE-2009-4305SQL injection vulnerability in the SCORM module in Moodle 1.…
- CVE-2009-4306Unspecified vulnerability in the EXT4_IOC_MOVE_EXT (aka move…
- CVE-2009-4307The ext4_fill_flex_info function in fs/ext4/super.c in the L…
- CVE-2009-4308The ext4_decode_error function in fs/ext4/super.c in the ext…
- CVE-2009-4310Stack-based buffer overflow in the Intel Indeo41 codec for W…
- CVE-2009-4311Unspecified vulnerability in the Indeo codec in Microsoft Wi…
- CVE-2009-4312Unspecified vulnerability in the Indeo codec in Microsoft Wi…
- CVE-2009-4313ir32_32.dll 3.24.15.3 in the Indeo32 codec in Microsoft Wind…
- CVE-2009-4314Sun Ray Server Software 4.1 on Solaris 10, when Automatic Mu…
- CVE-2009-4315Directory traversal vulnerability in admin/ajaxsave.php in N…
Are you affected by CVE-2009-4309?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
