Lucene search

K
cveMicrosoftCVE-2006-0025
HistoryJun 13, 2006 - 7:06 p.m.

CVE-2006-0025

2006-06-1319:06:00
CWE-119
microsoft
web.nvd.nist.gov
104
4
cve-2006-0025
buffer overflow
windows media player
remote code execution
png
nvd

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.933

Percentile

99.1%

Stack-based buffer overflow in Microsoft Windows Media Player 9 and 10 allows remote attackers to execute arbitrary code via a PNG image with a large chunk size.

Affected configurations

Nvd
Node
microsoftwindows_media_playerMatch9
OR
microsoftwindows_media_playerMatch10
VendorProductVersionCPE
microsoftwindows_media_player9cpe:2.3:a:microsoft:windows_media_player:9:*:*:*:*:*:*:*
microsoftwindows_media_player10cpe:2.3:a:microsoft:windows_media_player:10:*:*:*:*:*:*:*

References

Social References

More

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.933

Percentile

99.1%