Skip to main content

Microsoft Windows DirectX MJPEG/SAMI File Processing Vulnerabilities( 11 June 2008 )

Last Update Date: 28 Jan 2011 Release Date: 11 Jun 2008 5275 Views

RISK: Medium Risk

1. MJPEG Decoder Vulnerability

A remote code execution vulnerability exists in the way that the Windows MJPEG Codec handles MJPEG streams in AVI or ASF files. A user would have to preview or play a specially crafted MJPEG file for the vulnerability to be exploited.

2. SAMI Format Parsing Vulnerability

A remote code execution vulnerability exists in the way DirectX handles supported format files. This vulnerability could allow remote code execution if a user opened a specially crafted file.