Microsoft Windows Media Player 6.4 Security Patch: 'ASX Buffer Overrun' Vulnerability (Win95/98/NT/2000 Only)

Category
Utilities
Patches and Updates

Review

Windows Media Player supports the use of Active Stream Redirector (.ASX) files to enable users to play streaming media that resides on intranet or Internet sites. However, the code that parses .ASX files has an unchecked buffer, and this could potentially enable a malicious user to run code of his choice on the machine of another user. The malicious user could either send an affected file to another user and entice her to run or preview it, or he could host such a file on a web site and cause it to launch automatically whenever a user visited the site. The code could take any action on the machine that the legitimate user herself could take. Apply this patch only if you have Windows Media Player version 6.4 installed on Windows 95/98/NT4.0/2000. This patch should NOT be applied to Windows ME, which comes with Windows Media Player version 7.


Search

Recent searches