Overview
Windows Media Player does not properly handle malformed Windows Media Metafiles. This vulnerability may allow a remote attacker to execute arbitrary code or crash Windows Media Player.
Description
Windows Media Player (WMP) is a multimedia application that comes with Microsoft Windows. According to Microsoft: Advanced Stream Redirector (.asx) files, also known as Windows Media Metafiles, are text files that provide information about a file stream and its presentation. ASX files go beyond the simple task of defining playlists to provide Windows Media Player with information about how to present particular media items of the playlist. |
Impact
Although the buffer overflow is limited, it may still be possible to corrupt memory in a way that can allow an attacker to execute code or crash WMP. |
Solution
Apply an update from Microsoft |
|
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
- http://blogs.technet.com/msrc/archive/2006/12/07/public-proof-of-concept-code-for-asx-file-format-isssue.aspx
- http://support.microsoft.com/default.aspx?scid=kb;en-us;Q316992
- http://research.eeye.com/html/alerts/zeroday/20061122.html
- http://www.microsoft.com/windows/windowsmedia/default.mspx
- http://windowssdk.msdn.microsoft.com/en-us/library/aa385262.aspx
- http://www.microsoft.com/technet/security/bulletin/ms06-078.mspx
Acknowledgements
This vulnerability was publicly disclosed by sehato.
This document was written by Jeff Gennari.
Other Information
CVE IDs: | CVE-2006-6134 |
Severity Metric: | 20.25 |
Date Public: | 2006-11-22 |
Date First Published: | 2006-12-08 |
Date Last Updated: | 2006-12-13 16:36 UTC |
Document Revision: | 36 |