Stack-based buffer overflow in the DirectShow Synchronized Accessible Media Interchange (SAMI) parser in quartz.dll for Microsoft DirectX 7.0 through 10.0 allows remote attackers to execute arbitrary code via a crafted SAMI file.
2007-12-12T00:46:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 8.5 (HIGH)
AV:N/AC:M/Au:S/C:C/I:C/A:C
6.8
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | microsoft | windows_2000 | * | No |
Operating System | microsoft | windows_2003_server | datacenter_edition | No |
Operating System | microsoft | windows_2003_server | enterprise_edition | No |
Operating System | microsoft | windows_2003_server | standard | No |
Operating System | microsoft | windows_2003_server | web_edition | No |
Operating System | microsoft | windows_vista | * | No |
Operating System | microsoft | windows_xp | * | No |
Operating System | microsoft | windows_xp | * | No |
Application | microsoft | directx | 5.2 | Yes |
Application | microsoft | directx | 6.1 | Yes |
Application | microsoft | directx | 7.0 | Yes |
Application | microsoft | directx | 7.0a | Yes |
Application | microsoft | directx | 7.1 | Yes |
Application | microsoft | directx | 8.0 | Yes |
Application | microsoft | directx | 8.0a | Yes |
Application | microsoft | directx | 8.1 | Yes |
Application | microsoft | directx | 8.1a | Yes |
Application | microsoft | directx | 8.1b | Yes |
Application | microsoft | directx | 8.2 | Yes |
Application | microsoft | directx | 9.0a | Yes |
Application | microsoft | directx | 9.0b | Yes |
Application | microsoft | directx | 9.0c | Yes |
Application | microsoft | directx | 10.0 | Yes |