Reported November 19, 2001, by
Microsoft.
VERSIONS AFFECTED
Microsoft
Windows Media Player for Windows XP
Microsoft
Windows Media Player 7.1
Microsoft
Windows Media Player 7
Microsoft
Windows Media Player 6.4
DESCRIPTION
VENDOR RESPONSE
The
vendor, Microsoft, has released security
bulletin MS01-056
to address this vulnerability and recommends that affected users immediately
apply the patches listed in the security bulletin. Microsoft will also include
this fix in Windows 2000 Service Pack 3.
CREDIT
A
vulnerability exists in Microsoft Windows Media Player Explorer that might
result in a buffer overrun condition. The vulnerability stems from an unchecked
buffer in Windows Media Player that can let a specially crafted .asf file crash
Windows Media Player or execute code using the user's security context.
Discovered by Microsoft.
Unchecked Buffer in Microsoft Windows Media Player
0 comments
Hide comments