Stack-based buffer overflow in Microsoft DirectX 7.0 and 8.1 on Windows 2000 SP4 allows remote attackers to execute arbitrary code via a Synchronized Accessible Media Interchange (SAMI) file with crafted parameters for a Class Name variable, aka the "SAMI Format Parsing Vulnerability."
2008-06-12T02:32:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | microsoft | windows-nt | xp | No |
Operating System | microsoft | windows_2000 | * | No |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_xp | * | No |
Operating System | microsoft | windows_xp | * | No |
Operating System | microsoft | windows_xp | * | No |
Application | microsoft | directx | 9.0 | Yes |
Operating System | microsoft | windows-nt | 2008 | No |
Operating System | microsoft | windows-nt | 2008 | No |
Operating System | microsoft | windows-nt | 2008 | No |
Operating System | microsoft | windows_vista | * | No |
Application | microsoft | directx | 10.0 | Yes |
Operating System | microsoft | windows_2000 | * | No |
Application | microsoft | directx | 7.0 | Yes |
Application | microsoft | directx | 8.1 | Yes |