CVE-2007-3895
Published Dec 12, 2007
Last updated 6 years ago
Overview
- Description
- Buffer overflow in Microsoft DirectShow in Microsoft DirectX 7.0 through 10.0 allows remote attackers to execute arbitrary code via a crafted (1) WAV or (2) AVI file.
- Source
- secure@microsoft.com
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 9.3
- Impact score
- 10
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-119
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:microsoft:windows_2000:*:sp4:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "83E7C4A0-78CF-4B56-82BF-EC932BDD8ADF" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:microsoft:directx:7.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2BFE77B9-6C2A-45D3-A4B5-2679CC4B0DA2" }, { "criteria": "cpe:2.3:a:microsoft:directx:8.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8FF0278F-AFA7-48BA-8762-5569EC174AEE" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:microsoft:windows_2000:*:sp4:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "83E7C4A0-78CF-4B56-82BF-EC932BDD8ADF" }, { "criteria": "cpe:2.3:o:microsoft:windows_2003_server:*:*:x64:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "CD264C73-360E-414D-BE22-192F92E5A0A3" }, { "criteria": "cpe:2.3:o:microsoft:windows_2003_server:*:sp1:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "FE8F4276-4D97-480D-A542-FE9982FFD765" }, { "criteria": "cpe:2.3:o:microsoft:windows_2003_server:*:sp1:itanium:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "972ADDBC-5D6E-48D5-9DB7-44FE0539807D" }, { "criteria": "cpe:2.3:o:microsoft:windows_2003_server:*:sp2:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "2978BF86-5A1A-438E-B81F-F360D0E30C9C" }, { "criteria": "cpe:2.3:o:microsoft:windows_2003_server:*:sp2:itanium:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "F7EFB032-47F4-4497-B16B-CB9126EAC9DF" }, { "criteria": "cpe:2.3:o:microsoft:windows_2003_server:*:sp2:x64:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "6881476D-81A2-4DFD-AC77-82A8D08A0568" }, { "criteria": "cpe:2.3:o:microsoft:windows_xp:*:*:x64:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "ACF75FC8-095A-4EEA-9A41-C27CFF3953FB" }, { "criteria": "cpe:2.3:o:microsoft:windows_xp:*:sp2:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "9B339C33-8896-4896-88FF-88E74FDBC543" }, { "criteria": "cpe:2.3:o:microsoft:windows_xp:*:sp2:x64:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "57ECAAA8-8709-4AC7-9CE7-49A8040C04D3" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:microsoft:directx:9.0c:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "44C68B75-2B7A-450B-BA1B-03E77E03B59B" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:microsoft:windows_vista:*:gold:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "D34A558F-A656-43EB-AC52-C3710F77CDD8" }, { "criteria": "cpe:2.3:o:microsoft:windows_vista:*:gold:x64:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "F9DC56EB-EDC4-4DFE-BA9B-B17FF4A91734" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:microsoft:directx:10.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5A53A6AC-74B0-4DB3-B94D-06FB969AE83C" } ], "operator": "OR" } ], "operator": "AND" } ]