Back to search
CVE-2009-1537
Published: May 29, 2009
Modified: May 21, 2026
PUBLISHED
Description
Unspecified vulnerability in the QuickTime Movie Parser Filter in quartz.dll in DirectShow in Microsoft DirectX 7.0 through 9.0c on Windows 2000 SP4, Windows XP SP2 and SP3, and Windows Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted QuickTime media file, as exploited in the wild in May 2009, aka "DirectX NULL Byte Overwrite Vulnerability."
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
MS09-028
vendor-advisory
x_refsource_MS
oval:org.mitre.oval:def:6237
vdb-entry
signature
x_refsource_OVAL
35268
third-party-advisory
x_refsource_SECUNIA
1022299
vdb-entry
x_refsource_SECTRACK
ADV-2009-1886
vdb-entry
x_refsource_VUPEN
ADV-2009-1445
vdb-entry
x_refsource_VUPEN
54797
vdb-entry
x_refsource_OSVDB
35139
vdb-entry
x_refsource_BID
TA09-195A
third-party-advisory
x_refsource_CERT
http://isc.sans.org/diary.html?storyid=6481
x_refsource_MISC
http://www.microsoft.com/technet/security/advisory/971778.mspx
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now