4.3
CVSSv2

CVE-2008-5745

Published: 29/12/2008 Updated: 11/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 440
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Integer overflow in quartz.dll in the DirectShow framework in Microsoft Windows Media Player (WMP) 9, 10, and 11, including 11.0.5721.5260, allows remote malicious users to cause a denial of service (application crash) via a crafted (1) WAV, (2) SND, or (3) MID file. NOTE: this has been incorrectly reported as a code-execution vulnerability. NOTE: it is not clear whether this issue is related to CVE-2008-4927.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows media player 9

microsoft windows media player 10

microsoft windows media player 11

Exploits

source: wwwsecurityfocuscom/bid/33042/info Microsoft Windows Media Player is prone to a code-execution vulnerability An attacker can exploit this issue by tricking an unsuspecting victim into opening a malicious file with the vulnerable application A successful exploit will allow arbitrary code to run in the context of the user running ...
----------------------------------------------------------------------------------------| MS Windows Media Player * (WAV) Remote Integrer Overflow | | Application: ALL Windows Media player ...