CVE-2009-4311
- EPSS 25.39%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the Indeo codec in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via crafted media content, as reported to Microsoft by Paul Byrne of NGS Software. NOTE...
CVE-2009-4312
- EPSS 25.39%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the Indeo codec in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via crafted media content, as reported to Microsoft by Dave Lenoe of Adobe.
CVE-2009-4313
- EPSS 28.68%
- Veröffentlicht 13.12.2009 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
ir32_32.dll 3.24.15.3 in the Indeo32 codec in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to cause a denial of service (heap corruption) or execute arbitrary code via malformed data in a stream in a media f...
CVE-2009-2506
- EPSS 74.62%
- Veröffentlicht 09.12.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in the text converters in Microsoft Office Word 2002 SP3 and 2003 SP3; Works 8.5; Office Converter Pack; and WordPad in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via a DOC...
CVE-2009-3671
- EPSS 56.49%
- Veröffentlicht 09.12.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Unini...
CVE-2009-3673
- EPSS 55.4%
- Veröffentlicht 09.12.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Microsoft Internet Explorer 7 and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka ...
CVE-2009-3674
- EPSS 59.22%
- Veröffentlicht 09.12.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Unini...
CVE-2009-3675
- EPSS 38.94%
- Veröffentlicht 09.12.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
LSASS.exe in the Local Security Authority Subsystem Service (LSASS) in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote authenticated users to cause a denial of service (CPU consumption) via a malformed ISAKMP request ove...
- EPSS 66.7%
- Veröffentlicht 09.12.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Internet Authentication Service (IAS) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold and SP1, and Server 2008 Gold does not properly verify the credentials in an MS-CHAP v2 Protected Extensible Authentication Protocol ...
CVE-2009-1127
- EPSS 1.2%
- Veröffentlicht 11.11.2009 19:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
win32k.sys in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 does not correctly validate an argument to an unspecified system call, which allows local users to gain pr...