CVE-2007-6401
published 2007-12-17CVE-2007-6401: Stack-based buffer overflow in mplayer2.exe in Microsoft Windows Media Player (WMP) 6.4, when used with the 3ivx 4.5.1 or 5.0.1 codec, allows remote attackers…
PriorityP357critical9.3CVSS 2.0
AVNACMAuNCCICAC
EXPLOIT
EPSS
29.73%
98.0th percentile
Stack-based buffer overflow in mplayer2.exe in Microsoft Windows Media Player (WMP) 6.4, when used with the 3ivx 4.5.1 or 5.0.1 codec, allows remote attackers to execute arbitrary code via a certain .mp4 file, possibly a related issue to CVE-2007-6402.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| 3ivx | mpeg-4_codec | — | — |
| 3ivx | mpeg-4_codec | — | — |
| guliverkli | media_player_classic | — | — |
| microsoft | windows_media_player | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Malicious .mp4 file delivered as a ZIP archive (PK magic bytes \x50\x4B\x03\x04) targeting mplayer2.exe / mplayerc.exe with 3ivx codec 4.5.1 or 5.0.1 installed; triggers stack-based buffer overflow on open. ↗
- →Post-exploitation reverse shell binds on TCP port 49152; monitor for unexpected outbound or inbound connections on that port from media player processes. ↗
- →Exploit targets Windows XP SP2; presence of 3ivx codec (3ivx_d4_451_win.exe or 5.0.1) combined with mplayer2.exe / mplayerc.exe 6.4.9 is a high-risk configuration. ↗
- ·CVE-2007-6402 (NVD doc) references mplayerc.exe (Media Player Classic 6.4.9) while the exploit targets mplayer2.exe (Windows Media Player 6.4); both share the same vulnerable 3ivx codec attack surface and are noted as possibly related to CVE-2007-6401. ↗
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hxgc-wgw8-44gx: Stack-based buffer overflow in mplayer2
ghsa_unreviewed·2022-05-01·CVSS 9.3
CVE-2007-6401 [CRITICAL] CWE-119 GHSA-hxgc-wgw8-44gx: Stack-based buffer overflow in mplayer2
Stack-based buffer overflow in mplayer2.exe in Microsoft Windows Media Player (WMP) 6.4, when used with the 3ivx 4.5.1 or 5.0.1 codec, allows remote attackers to execute arbitrary code via a certain .mp4 file, possibly a related issue to CVE-2007-6402.
GHSA
GHSA-pvjg-m4rc-ch2c: Stack-based buffer overflow in mplayerc
ghsa_unreviewed·2022-05-01·CVSS 9.3
CVE-2007-6402 [CRITICAL] CWE-119 GHSA-pvjg-m4rc-ch2c: Stack-based buffer overflow in mplayerc
Stack-based buffer overflow in mplayerc.exe in Media Player Classic (MPC) 6.4.9, when used with the 3ivx 4.5.1 or 5.0.1 codec, allows remote attackers to execute arbitrary code via a certain .mp4 file, possibly a related issue to CVE-2007-6401.
No detection rules found.
No writeups or analysis indexed.
http://securityreason.com/securityalert/3453http://www.securityfocus.com/archive/1/484779/100/0/threadedhttp://www.securityfocus.com/bid/26773http://www.securitytracker.com/id?1019064http://www.vupen.com/english/advisories/2007/4141http://securityreason.com/securityalert/3453http://www.securityfocus.com/archive/1/484779/100/0/threadedhttp://www.securityfocus.com/bid/26773http://www.securitytracker.com/id?1019064http://www.vupen.com/english/advisories/2007/4141
2007-12-17
Published