CVE-2006-0025Improper Restriction of Operations within the Bounds of a Memory Buffer in Microsoft Windows Media Player

Severity
9.3CRITICALNVD
EPSS
64.8%
top 1.53%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 13
Latest updateMay 1

Description

Stack-based buffer overflow in Microsoft Windows Media Player 9 and 10 allows remote attackers to execute arbitrary code via a PNG image with a large chunk size.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-xg7m-r4cx-cq66: Stack-based buffer overflow in Microsoft Windows Media Player 9 and 10 allows remote attackers to execute arbitrary code via a PNG image with a large2022-05-01
CVEList
CVE-2006-0025: Stack-based buffer overflow in Microsoft Windows Media Player 9 and 10 allows remote attackers to execute arbitrary code via a PNG image with a large2006-06-13
CVE-2006-0025 — Microsoft vulnerability | cvebase