vendor:
Windows Explorer
by:
BraniX
5.5
CVSS
MEDIUM
Denial of Service
399
CWE
Product Name: Windows Explorer
Affected Version From: Windows Explorer 6.0.2900.5512 (Shmedia.dll 6.0.2900.5512)
Affected Version To: Windows Explorer 6.0.2900.5512 (Shmedia.dll 6.0.2900.5512)
Patch Exists: NO
Related CWE:
CPE: a:microsoft:windows_explorer:6.0.2900.5512
Platforms Tested: Windows XP SP3 Home Edition, Windows XP SP3 Professional Edition
2011
Windows Explorer DoS
The DoS is caused by an unhandled exception in the module Shmedia.dll, which is loaded via Explorer.exe. The exploit code contains assembly instructions that manipulate registers and perform an integer division by zero, resulting in a crash.
Mitigation:
Apply the latest patches and updates from Microsoft to fix the vulnerability. Avoid opening or accessing malicious files.