Microsoft Windows Movie Maker and Producer Buffer Overflow
| TSL ID | FSC20100309-04 |
| CVE ID(s) | CVE-2010-0265 |
| Severity | High |
| Description | A buffer overflow vulnerability exists in Microsoft Windows Movie Maker and Microsoft Producer. The flaw is due to the way the affected products parse maliciously crafted project files. A remote attacker can leverage this vulnerability by enticing a target user to open a malicious file. A successful attack can result in the injection and execution of arbitrary code on a target system. The resulting code would execute within the security context of the logged in user. In an unsuccessful attack, the affected application may abnormally terminate. The vendor, Microsoft, has released updates that address this vulnerability: http://www.microsoft.com/technet/security/Bulletin/MS10-016.mspx |
| Affected Products |
|
| CVSS Score |
Base 6.8 (AV:N/AC:M/Au:N/C:P/I:P/A:P):
|