PT-2009-3863 · Microsoft · Windows Media Player
Huofu
·
Published
2009-04-17
·
Updated
2017-09-29
·
CVE-2009-1331
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows Media Player version 11.0.5721.5260
Description
The issue is related to an integer overflow in Microsoft Windows Media Player, which can be triggered by a crafted .mid file. This can cause a denial of service, resulting in an application crash.
Recommendations
For Microsoft Windows Media Player version 11.0.5721.5260, consider avoiding the use of crafted .mid files to prevent the application crash until a fix is available. As a temporary workaround, restrict the opening of .mid files from untrusted sources in Windows Media Player to minimize the risk of exploitation.
Exploit
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows Media Player