Skip to content
Silicon Shecky

Silicon Shecky

Infosec Practitioner

  • New Year, New Post, from the start General
  • First Defcon – The results Reviews
  • Defender, KQL and Lockbit Microsoft
  • Do well, not be “popular” Ramblings
  • Defense Layers: A Case Study Microsoft
  • Device vs. User Microsoft
  • Ransomware, Are You Ready? General
  • Gatekeeping and Treatment of Others Rants

Direct-X Under Attack

Posted on May 29, 2009 By Michael Kavka No Comments on Direct-X Under Attack

It seems that a vulnerability in Direct X’s Direct Show subsystem is coming under attack. Now the vulnerability allows execution of code, but only as the logged on user, which means if you are smart, then the normal user account does not have admin rights, and code executed through this vulnerability won’t be able to do as much.

The thing that makes this so major, even though it doesn’t automatically grant admin rights, is the fact that Direct X is used for a lot of multimedia applications. In fact most games use either Direct X or Open GL for rendering. Now add on that the issue is with a Quicktime subroutine in Direct Show, and that even if you have Quicktime installed on your system, the Direct X exploit Can still be access, and you have the makings of a huge issue.

Now the other thing that is interesting is that this only affects Windows 2000, 2003 and XP. Vista and 2008 are not affected, or at least have not been shown to be affected by this vulnerability.

Workarounds and more information is available in the actual Microsoft Security Advisory for this vulnerability.

Computers, Security Tags:Advisory 971778, Direct Show, Direct X, Microsoft, Quicktime, Remote Execution, Security, Security Holes, Vulnerability

Post navigation

Previous Post: Shecky Tweets for 2009-05-28
Next Post: Shecky Tweets for 2009-05-29

Related Posts

  • Defender, KQL and Lockbit Microsoft
  • Defense Layers: A Case Study Microsoft
  • Device vs. User Microsoft
  • Ransomware, Are You Ready? General
  • Are you sure it is the execs? Ramblings
  • The one about banking passwords… Rants

More Related Articles

Defender, KQL and Lockbit Microsoft
Defense Layers: A Case Study Microsoft
Device vs. User Microsoft
Ransomware, Are You Ready? General
Are you sure it is the execs? Ramblings
The one about banking passwords… Rants

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

  • About
  • Links
    • Burbsec
    • BSides312
    • Infosec Exchange Mastodon
    • BSidesRoc
    • Hacks4Pancakes Blog
    • Krebs On Security
    • Bleeping Computer
  • Categories
    • General
    • Computers
    • Software
    • Rants
    • Security
    • Internet/Music
    • Reviews
    • Microsoft
    • Hardware
    • Mobile Computing
  • Archives
  • Social Media

Browse by tags

Active Directory Android Antivirus Apple Beta Chrome Computers Exchange Exchange 2007 Firefox General Thoughts Google InfoSec Internet Explorer iOS iPad IT Linux Mac Malware Microsoft OS OSx Patches Rants SBS SBS 2008 Security Security Patches Server SMB Software Support Surface TechEd Tweets Ubuntu Verizon Virus Vista vulnerabilities Windows Windows 7 Windows 8 XP

RSS Taggart Institute Intel Feed

  • New Year, New Post, from the start General
  • First Defcon – The results Reviews
  • Defender, KQL and Lockbit Microsoft
  • Do well, not be “popular” Ramblings
  • Defense Layers: A Case Study Microsoft
  • Device vs. User Microsoft
  • Ransomware, Are You Ready? General
  • Gatekeeping and Treatment of Others Rants

Social Media

  • Bluesky
  • Mastodon
  • Twitter

Copyright © 2026 Silicon Shecky.