HIGH
Heap-based buffer overflow in the WMCheckURLScheme function in WMVCORE.DLL in Microsoft Windows Media Player (WMP) 10.00.00.4036 on Windows XP SP2, Server 2003, and Server 2003 SP1 allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via a long HREF attribute, using an unrecognized protocol, in a REF element in an ASX PlayList file
Published Nov 28, 2006
7.5
HIGHCVSS 2.0
EPSS 42.13%
Description
Heap-based buffer overflow in the WMCheckURLScheme function in WMVCORE.DLL in Microsoft Windows Media Player (WMP) 10.00.00.4036 on Windows XP SP2, Server 2003, and Server 2003 SP1 allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via a long HREF attribute, using an unrecognized protocol, in a REF element in an ASX PlayList file.
Affected products
No data.
- 10.00.00.4036
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (15)
- http://blogs.technet.com/msrc/archive/2006/12/07/public-proof-of-concept-code-for-asx-file-format-isssue.aspx x_refsource_CONFIRM
- http://research.eeye.com/html/alerts/zeroday/20061122.html x_refsource_MISC
- http://secunia.com/advisories/22971 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://securityreason.com/securityalert/1922 third-party-advisoryx_refsource_SREASON
- http://securitytracker.com/id?1017354 vdb-entryx_refsource_SECTRACK
- http://support.avaya.com/elmodocs2/security/ASA-2006-274.htm x_refsource_CONFIRM
- http://www.kb.cert.org/vuls/id/208769 third-party-advisoryx_refsource_CERT-VNUS Government Resource
- http://www.securityfocus.com/archive/1/452352/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/453579/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/454969/100/200/threaded vendor-advisoryx_refsource_HP
- http://www.securityfocus.com/bid/21247 vdb-entryx_refsource_BIDExploit
- http://www.us-cert.gov/cas/techalerts/TA06-346A.html third-party-advisoryx_refsource_CERTUS Government Resource
- http://www.vupen.com/english/advisories/2006/4882 vdb-entryx_refsource_VUPENVendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-078 vendor-advisoryx_refsource_MS
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A669 vdb-entrysignaturex_refsource_OVAL
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Nov 28, 2006
Updated Aug 7, 2024
Reserved Nov 27, 2006
Link CVE-2006-6134
CISA Vulnrichment
Updated n/a