RULE(RULE ID:1905240)

Rule General Information
Release Date: 2019-11-19
Rule Name: Microsoft Windows DirectShow Insecure Library Loading Vulnerability (CVE-2011-0032)
Severity:
CVE ID:
Rule Protection Details
Description: Untrusted search path vulnerability in DirectShow in Microsoft Windows Vista SP1 and SP2, Windows 7 Gold and SP1, Windows Server 2008 R2 and R2 SP1, and Windows Media Center TV Pack for Windows Vista allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a Digital Video Recording (.dvr-ms), Windows Recorded TV Show (.wtv), or .mpg file, aka "DirectShow Insecure Library Loading Vulnerability."
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Others
Reference: SecurityFocusBID:46682
MicrosoftSecurityBulletin:ms11-015
SecurityTrackerID:1025170
http://www.us-cert.gov/cas/techalerts/TA11-067A.html
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
http://www.microsoft.com/technet/security/Bulletin/MS11-015.mspx