CVE-2014-10024
Multiple integer signedness errors in DirectShowDemuxFilter, as used in Divx Web Player, Divx Player, and other Divx plu
Multiple integer signedness errors in DirectShowDemuxFilter, as used in Divx Web Player, Divx Player, and other Divx plugins, allow remote attackers to execute arbitrary code via a (1) negative or (2) large value in a Stream Format (STRF) chunk in an AVI file, which triggers a heap-based buffer overflow.
HIGH · CVSS 7.5
EPSS 0.03377
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules4
YARA rules0