Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-3008
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-3008

Description:
Stack-based buffer overflow in the WMEncProfileManager ActiveX control in wmex.dll in Microsoft Windows Media Encoder 9 Series allows remote attackers to execute arbitrary code via a long first argument to the GetDetailsString method, aka "Windows Media Encoder Buffer Overrun Vulnerability."

CVE Status:
Candidate

References:

ST
  1020832

OVAL
  http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6018

MS
  http://www.microsoft.com/technet/security/Bulletin/MS08-053.mspx

MILW0RM
  http://www.milw0rm.com/exploits/6454

HP
  http://marc.info/?l=bugtraq&m=122235754013992&w=2

CERT-VN
  996227

CERT
  http://www.us-cert.gov/cas/techalerts/TA08-253A.html

BID
  31065


Return to the previous page.