vendor:
Windows XP
by:
shahin
7.5
CVSS
HIGH
Heap Overflow
119
CWE
Product Name: Windows XP
Affected Version From: Windows XP SP3
Affected Version To: Windows XP SP3
Patch Exists: YES
Related CWE: CVE-2010-2553
CPE: o:microsoft:windows_xp::sp3
Platforms Tested: Windows
2010
Microsoft Cinepak Codec CVDecompress Heap Overflow
The Microsoft Cinepak Codec CVDecompress function in iccvid.dll in Windows XP SP3 allows remote attackers to execute arbitrary code via a crafted AVI file with Cinepak codec data, which triggers a heap-based buffer overflow.
Mitigation:
Apply the relevant security patch provided by Microsoft.