Windows Media
by Microsoft
CVEs (36)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-29962 | Hig | 0.58 | 8.8 | 0.11 | May 13, 2025 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network. | ||
| CVE-2025-53131 | Hig | 0.57 | 8.8 | 0.01 | Aug 12, 2025 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network. | ||
| CVE-2025-29964 | Hig | 0.57 | 8.8 | 0.01 | May 13, 2025 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network. | ||
| CVE-2025-29963 | Hig | 0.57 | 8.8 | 0.01 | May 13, 2025 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network. | ||
| CVE-2025-29840 | Hig | 0.57 | 8.8 | 0.01 | May 13, 2025 | Stack-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network. | ||
| CVE-2025-49691 | Hig | 0.52 | 8.0 | 0.00 | Jul 8, 2025 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over an adjacent network. | ||
| CVE-2026-20837 | Hig | 0.51 | 7.8 | 0.01 | Jan 13, 2026 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally. | ||
| CVE-2025-32716 | Hig | 0.51 | 7.8 | 0.00 | Jun 10, 2025 | Out-of-bounds read in Windows Media allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-26674 | Hig | 0.51 | 7.8 | 0.01 | Apr 8, 2025 | Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally. | ||
| CVE-2025-26666 | Hig | 0.51 | 7.8 | 0.01 | Apr 8, 2025 | Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally. | ||
| CVE-2023-21740 | Hig | 0.51 | 7.8 | 0.01 | Dec 12, 2023 | Windows Media Remote Code Execution Vulnerability | ||
| CVE-2023-29370 | Hig | 0.51 | 7.8 | 0.01 | Jun 14, 2023 | Windows Media Remote Code Execution Vulnerability | ||
| CVE-2023-29365 | Hig | 0.51 | 7.8 | 0.01 | Jun 14, 2023 | Windows Media Remote Code Execution Vulnerability | ||
| CVE-2023-23402 | Hig | 0.51 | 7.8 | 0.01 | Mar 14, 2023 | Windows Media Remote Code Execution Vulnerability | ||
| CVE-2023-23401 | Hig | 0.51 | 7.8 | 0.01 | Mar 14, 2023 | Windows Media Remote Code Execution Vulnerability | ||
| CVE-2023-21802 | Hig | 0.51 | 7.8 | 0.01 | Feb 14, 2023 | Windows Media Remote Code Execution Vulnerability | ||
| CVE-2022-44668 | Hig | 0.51 | 7.8 | 0.01 | Dec 13, 2022 | Windows Media Remote Code Execution Vulnerability | ||
| CVE-2022-44667 | Hig | 0.51 | 7.8 | 0.01 | Dec 13, 2022 | Windows Media Remote Code Execution Vulnerability | ||
| CVE-2021-33740 | Hig | 0.51 | 7.8 | 0.03 | Jul 14, 2021 | Windows Media Remote Code Execution Vulnerability | ||
| CVE-2019-1271 | Hig | 0.51 | 7.8 | 0.01 | Sep 11, 2019 | An elevation of privilege exists in hdAudio.sys which may lead to an out of band write, aka 'Windows Media Elevation of Privilege Vulnerability'. |
- risk 0.58cvss 8.8epss 0.11
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
- risk 0.57cvss 8.8epss 0.01
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
- risk 0.57cvss 8.8epss 0.01
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
- risk 0.57cvss 8.8epss 0.01
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
- risk 0.57cvss 8.8epss 0.01
Stack-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
- risk 0.52cvss 8.0epss 0.00
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over an adjacent network.
- risk 0.51cvss 7.8epss 0.01
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.
- risk 0.51cvss 7.8epss 0.00
Out-of-bounds read in Windows Media allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.01
Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.
- risk 0.51cvss 7.8epss 0.01
Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.
- risk 0.51cvss 7.8epss 0.01
Windows Media Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Media Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Media Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Media Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Media Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Media Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Media Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Media Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.03
Windows Media Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
An elevation of privilege exists in hdAudio.sys which may lead to an out of band write, aka 'Windows Media Elevation of Privilege Vulnerability'.
Page 1 of 2