vendor:
Windows Media Player
by:
HuoFu
7,5
CVSS
HIGH
Integer Overflow
190
CWE
Product Name: Windows Media Player
Affected Version From: 11.0.5721.5260
Affected Version To: 11.0.5721.5260
Patch Exists: NO
Related CWE: N/A
CPE: a:microsoft:windows_media_player
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2009
Windows Media Player (.mid file) Integer Overflow PoC
This exploit is for Windows Media Player. It creates a malicious .mid file which when opened in Windows Media Player, causes an integer overflow resulting in a crash. The malicious .mid file contains a header with a length of 0x6, followed by a track header with a length of 0x4e. The track header contains a malformed MIDI message which causes the integer overflow.
Mitigation:
The user should avoid opening untrusted .mid files in Windows Media Player.