DirectShow CVE-2009-1537

May 29th, 2009

The Sourcefire VRT is aware of a vulnerability affecting Microsoft DirectShow.

Details: 

Microsoft DirectShow Buffer Overflow (CVE-2009-1537): Microsoft DirectShow contains a programming error that may allow a remote attacker to execute code on an affected system. The problem occurs when DirectShow parses a specially crafted QuickTime file. A rule to detect attacks targeting this vulnerability is included in this release and is identified with GID 3, SID 15517. This rule requires GID 1, SID 15516 to be enabled.

For Assistance