← Back

CVE-2008-0011

nvd nist
Published: Jun 12, 2008Modified: Apr 23, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Microsoft DirectX 8.1 through 9.0c, and DirectX on Microsoft XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008, does not properly perform MJPEG error checking, which allows remote attackers to execute arbitrary code via a crafted MJPEG stream in a (1) AVI or (2) ASF file, aka the "MJPEG Decoder Vulnerability."

Affected (4)

Products: Microsoft: Directx
1 product
Directx
Configuration A
1 vulnerable · 10 platform
Vulnerable SoftwareAffected Versions
Version 9.0
Running on/withPlatform Versions
Microsoft
Windows Nt
Version xp sp3
Microsoft
Windows 2003 Server
All versions
Microsoft
Windows 2003 Server
All versions
Microsoft
Windows 2003 Server
All versions
Microsoft
Windows 2003 Server
All versions
Microsoft
Windows 2003 Server
All versions
Microsoft
Windows 2003 Server
All versions
Microsoft
Windows Xp
All versions
Microsoft
Windows Xp
All versions
Microsoft
Windows Xp
All versions
Configuration B
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Microsoft
Version 7.0
Version 8.1
Running on/withPlatform Versions
Microsoft
Windows 2000
All versions
Configuration C
1 vulnerable · 4 platform
Vulnerable SoftwareAffected Versions
Version 10.0
Running on/withPlatform Versions
Microsoft
Windows Nt
Version 2008
Microsoft
Windows Nt
Version 2008
Microsoft
Windows Nt
Version 2008
Microsoft
Windows Vista
All versions

References (16)

Source: cve@mitre.org
Mailing List
Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Patch
Source: cve@mitre.org
Patch
Source: cve@mitre.org
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link

Timeline

No history available yet.