(MS09-052) WMP Heap Overflow Vulnerability (974112)

Overview

A buffer overflow vulnerability in Microsoft Windows Media Player may allow remote code execution.

A buffer overflow vulnerability in Microsoft Windows Media Player may allow remote code execution. A remote code execution vulnerability exists in Windows Media Player 6.4. An attacker could exploit the vulnerability by constructing a specially crafted ASF file that could allow remote code execution when played using Windows Media Player 6.4. An attacker who successfully exploited this vulnerability could take complete control of an affected system.

Attack Vector

Maliciously Crafted File

User Interaction

user interaction is needed

Vendor Status

Responded and patched

Vulnerable Systems

Windows Media Player   6.4,

Timeline

2009-10-13

Vendor has provided a patch.

Recommendations

The vendor has released a patch to address this issue:
http://www.microsoft.com/technet/security/bulletin/ms09-052.mspx

Recommendations McAfee Product Mitigation

Additional Resources

(MS09-052) WMP Heap Overflow Vulnerability (974112)
http://www.microsoft.com/technet/security/bulletin/ms09-052.mspx