CVE-2009-1537CISA KEV: Actively Exploited

Microsoft DirectX NULL Byte Overwrite Vulnerability

Published May 20, 2026·Updated May 20, 2026

Description

Microsoft DirectX contains a NULL byte overwrite vulnerability in the QuickTime Movie Parser Filter in quartz.dll in DirectShow which could allow remote attackers to execute arbitrary code via a crafted QuickTime media file.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free