CVE-2009-4210

Microsoft Windows - Memory Corruption

Title source: llm
STIX 2.1

Description

The Indeo codec in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via crafted media content.

References (14)

Core 14
Core References
Vendor Advisory x_refsource_misc
http://www.fortiguard.com/advisory/FGA-2009-45.html
Vendor Advisory vendor-advisory x_refsource_mskb
http://support.microsoft.com/kb/955759
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11677
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/54644
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1023302
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/37251
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/508323/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/60857
Patch, Vendor Advisory vendor-advisory x_refsource_mskb
http://support.microsoft.com/kb/976138
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/3440
Vendor Advisory vendor-advisory x_refsource_mskb
http://support.microsoft.com/kb/954157
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/54645
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/37592

Scores

EPSS 0.1651
EPSS Percentile 96.6%

Details

CWE
CWE-94
Status published
Products (3)
microsoft/windows_2000
microsoft/windows_2003_server (3 CPE variants)
microsoft/windows_xp (3 CPE variants)
Published Dec 13, 2009
Tracked Since Feb 18, 2026