CVE-2009-1537: Microsoft DirectX NULL Byte Overwrite Vulnerability
Microsoft DirectX contains a NULL byte overwrite vulnerability in the QuickTime Movie Parser Filter in quartz.dll in DirectShow which could allow remote attackers to execute arbitrary code via a crafted QuickTime media file.
Other sources
Unspecified vulnerability in the QuickTime Movie Parser Filter in quartz.dll in DirectShow in Microsoft DirectX 7.0 through 9.0c on Windows 2000 SP4, Windows XP SP2 and SP3, and Windows Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted QuickTime media file, as exploited in the wild in May 2009, aka "DirectX NULL Byte Overwrite Vulnerability."
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Microsoft DirectXfrom your environment.Discontinue use of the product if mitigations are unavailable.
- Compensating control
Apply mitigations per vendor instructions.
- Compensating control
Follow applicable BOD 22-01 guidance for cloud services.
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1537?
CVE-2009-1537 has been classified with a high severity due to its potential to allow remote code execution.
How can I mitigate the risks associated with CVE-2009-1537?
To mitigate CVE-2009-1537, it is recommended to update to a fixed version of DirectShow or apply the relevant security patches provided by Microsoft.
Which versions of DirectX are affected by CVE-2009-1537?
CVE-2009-1537 affects Microsoft DirectX versions 7.0 through 9.0c.
Is CVE-2009-1537 exploitable through network attacks?
Yes, CVE-2009-1537 can be exploited by remote attackers via crafted QuickTime media files.
What operating systems are vulnerable to CVE-2009-1537?
CVE-2009-1537 affects Windows 2000 SP4, Windows XP SP2 and SP3, and Windows Server 2003 SP2.