Vulnerability Details CVE-2009-1546
                Integer overflow in Avifil32.dll in the Windows Media file handling functionality in Microsoft Windows allows remote attackers to execute arbitrary code on a Windows 2000 SP4 system via a crafted AVI file, or cause a denial of service on a Windows XP SP2 or SP3, Server 2003 SP2, Vista Gold, SP1, or SP2, or Server 2008 Gold or SP2 system via a crafted AVI file, aka "AVI Integer Overflow Vulnerability."
                
                    Exploit prediction scoring system (EPSS) score
                    
                        
                            EPSS Score 0.651
                        
                    
                    
                        
                            EPSS Ranking 98.4%
                        
                    
                 
                
                    CVSS Severity
                    
                    
                        
                            CVSS v2 Score 8.5
                        
                    
                 
                
                
                
                    
                
                
                    
                        Products affected by CVE-2009-1546
                        
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:microsoft:windows_2003_server:sp2
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:microsoft:windows_server_2008:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:microsoft:windows_server_2008:r2
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:microsoft:windows_vista:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:microsoft:windows_xp:-