Lucene search

K
cve[email protected]CVE-2007-6401
HistoryDec 17, 2007 - 6:46 p.m.

CVE-2007-6401

2007-12-1718:46:00
CWE-119
web.nvd.nist.gov
95
cve-2007-6401
stack-based buffer overflow
mplayer2.exe
microsoft windows media player
wmp
3ivx
codec
remote attackers
arbitrary code

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

8 High

AI Score

Confidence

Low

0.886 High

EPSS

Percentile

98.7%

Stack-based buffer overflow in mplayer2.exe in Microsoft Windows Media Player (WMP) 6.4, when used with the 3ivx 4.5.1 or 5.0.1 codec, allows remote attackers to execute arbitrary code via a certain .mp4 file, possibly a related issue to CVE-2007-6402.

Affected configurations

NVD
Node
3ivxmpeg-4_codecMatch4.5.1
OR
3ivxmpeg-4_codecMatch5.0.1
OR
microsoftwindows_media_playerMatch6.4

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

8 High

AI Score

Confidence

Low

0.886 High

EPSS

Percentile

98.7%