|
|

CVE Reference: CVE-2007-3037 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2007-3037 |
|
|
Description: Microsoft Windows Media Player 7.1, 9, 10, and 11 allows remote attackers to execute arbitrary code via a skin file (WMZ or WMD) with crafted header information that causes a size mismatch between compressed and decompressed data and triggers a heap-based buffer overflow, aka "Windows Media Player Code Execution Vulnerability Parsing Skins." |
|
|
CVE Status: Candidate |
|
|
References: ST 1018565 SAID Secunia Advisory: SA26433 OVAL http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2207 OSVDB 36385 MS http://www.microsoft.com/technet/security/bulletin/ms07-047.mspx MISC http://www.zerodayinitiative.com/advisories/ZDI-07-046.html CERT http://www.us-cert.gov/cas/techalerts/TA07-226A.html BUGTRAQ http://www.securityfocus.com/archive/1/archive/1/476533/100/0/threaded BID 25307 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |