PT-2009-3863 · Microsoft · Windows Media Player

Huofu

·

Published

2009-04-17

·

Updated

2017-09-29

·

CVE-2009-1331

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Windows Media Player version 11.0.5721.5260
Description The issue is related to an integer overflow in Microsoft Windows Media Player, which can be triggered by a crafted .mid file. This can cause a denial of service, resulting in an application crash.
Recommendations For Microsoft Windows Media Player version 11.0.5721.5260, consider avoiding the use of crafted .mid files to prevent the application crash until a fix is available. As a temporary workaround, restrict the opening of .mid files from untrusted sources in Windows Media Player to minimize the risk of exploitation.

Exploit

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-1331

Affected Products

Windows Media Player