Heap-based buffer overflow in the bitmap processing routine in Microsoft Windows Media Player 7.1 on Windows 2000 SP4, Media Player 9 on Windows 2000 SP4 and XP SP1, and Media Player 10 on XP SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted bitmap (.BMP) file that specifies a size of 0 but contains additional data.
2006-02-14T22:06:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | windows_media_player | 7.1 | Yes |
Application | microsoft | windows_media_player | 9 | Yes |
Application | microsoft | windows_media_player | 10 | Yes |
Operating System | microsoft | windows_2000 | * | Yes |
Operating System | microsoft | windows_2000 | * | Yes |
Operating System | microsoft | windows_2003_server | r2 | Yes |
Operating System | microsoft | windows_98 | * | Yes |
Operating System | microsoft | windows_98se | * | Yes |
Operating System | microsoft | windows_me | * | Yes |
Operating System | microsoft | windows_xp | * | Yes |
Operating System | microsoft | windows_xp | * | Yes |