CVE-2008-0015 is a stack-based buffer overflow in Microsoft's Video ActiveX Control that allows remote code execution via crafted web pages. While the vulnerability enables remote code execution, it targets client-side ActiveX components in web browsers rather than server infrastructure, requiring user interaction to visit a malicious website.
Data Source: CIRCL
Confidence: HIGH
Exploitation Method: USER_INTERACTION
CVE Published: 2009-07-07
Added to CISA KEV: 2026-02-17 6069 DAYS BETWEEN CVE AND KEV
CVE-2008-0015 is a critical security vulnerability involving a stack-based buffer overflow in the `CComVariant::ReadFromStream` function within the Active Template Library (ATL), specifically as it was used in the `MPEG2TuneRequest` ActiveX control (`msvidctl.dll`) in Microsoft DirectShow [1].
Description Stack-based buffer overflow in the CComVariant::ReadFromStream function in the Active Template Library (ATL), as used in the MPEG2TuneRequest ActiveX control in msvidctl.dll in DirectShow, in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Serveβ¦
Before I go into the details, the key thing I want customers to understand is that this is an issue that was responsibly reported to us and we have been driving in our standard process towards a security update. ... report from Ryan Smith and Alex Wheeler with IBM ISS X-Force in the early Spring ofβ¦
Vulnerability Details : CVE-2008-0015. Public exploit exists!Metasploit modules for CVE-2008-0015. Microsoft DirectShow (msvidctl.dll) MPEG-2 Memory Corruption. Disclosure Date: 2009-07-05.