The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft Security Bulletin MS01-056: Windows Media Player .ASF Processor Contains Unchecked Buffer
Time: 05:39 EST/10:39 GMT | News Source: Microsoft TechNet Security | Posted By: Matthew Sabean

One of the streaming media formats supported by Windows Media Player is Advanced Streaming Format (ASF). A security vulnerability occurs in Windows Media Player 6.4 because the code that processes ASF files contains an unchecked buffer. By creating a specially malformed ASF file and inducing a user to play it, an attacker could overrun the buffer, with either of two results: in the simplest case, Windows Media Player 6.4 would fail; in the more complex case, code chosen by the attacker could be made to run on the user’s computer, with the privileges of the user. The scope of this vulnerability is rather limited. It affects only Windows Media Player 6.4, and can only be exploited by the user opening and deliberately playing an ASF file. There is no capability to exploit this vulnerability via email or a web page.

However, the patch eliminates additional vulnerabilities. Specifically, it eliminates all known vulnerabilities affecting Windows Media Player 6.4 - discussed in Microsoft Security Bulletins MS00-090, MS01-029, and MS01-042 - as well as some additional variants of these vulnerabilities that were discovered internally by Microsoft. Some of these vulnerabilities could be exploited via email or a web page. In addition, some affect components of Windows Media Player 6.4 that, for purposes of backward compatibility, ship with Windows Media Player 7, and 7.1. We therefore recommend that customers running any of these versions of Windows Media Player apply the patch to ensure that they are fully protected against all known vulnerabilities. Windows Media Player for Windows XP includes components of Windows Media Player 6.4, but they are not affected by the ASF buffer overrun or by any of the other vulnerabilities discussed in the security bulletins listed above. However, the version 6.4 components that ship with Windows Media Player for Windows XP are affected by some of the newly discovered variants of these vulnerabilities. Rather than installing this patch, however, we recommend that customers install the 25 October 2001 Critical Update for Windows XP.

Patch availability:
Windows Media Player 6.4, 7, or 7.1:
http://download.microsoft.com/download/winmediaplayer/Update/308567/WIN98MeXP/EN-US/wm308567.exe
Windows Media Player for Windows XP:
http://windowsupdate.com

Write Comment
Return to News

  Displaying 301 through 308 of 308
Prev | First
  The time now is 1:17:18 AM ET.
Any comment problems? E-mail us
#301 By 4240821 (77.246.244.253) at 11/27/2024 11:59:14 AM
https://justpaste.me/CQXv2
https://justpaste.me/CdIM3
https://justpaste.me/BjiY3
https://justpaste.me/Bfy64
https://justpaste.me/C9pH
https://justpaste.me/C0Om
https://justpaste.me/CM47
https://justpaste.me/CUtp
https://justpaste.me/CQ1K1
https://justpaste.me/Bh13

#302 By 4240821 (80.73.244.53) at 11/27/2024 3:16:22 PM
https://www.google.vu/amp/s/sexonly.su/get/a247/a247mzeswkxrzaaefim.php
https://www.google.ws/amp/s/sluts.su/get/a241/a241mfdqqxdjvkhbive.php
https://www.google.ws/amp/s/sluts.su/get/a139/a139chfvngfwyfjmula.php
https://www.google.vu/amp/s/sexonly.su/get/a272/a272urafqnmtxvounwy.php
https://www.google.tt/amp/s/nsfw.su/get/a20/a20kbqzdkoxzwfsmfn.php
https://www.google.tm/amp/s/sexonly.su/get/a209/a209ohillamlfjbuaod.php
https://www.google.vg/amp/s/nsfw.su/get/a9/a9chdlqmeoxgwsrgr.php
https://www.google.ws/amp/s/sexonly.top/get/a83/a83oeuxkhuqdqmeurd.php
https://www.google.vu/amp/s/nsfw.su/get/a170/a170crrlutcutpotjkj.php
https://www.google.tm/amp/s/sexonly.su/get/a153/a153ekfreemgwtadkog.php

#303 By 4240821 (77.83.4.69) at 11/28/2024 5:18:32 AM
https://forms.yandex.com/u/63679521f47e736a56158b09/
https://telegra.ph/Ashley-Green---New-Haven--Connecticut--USA-12-01
https://telegra.ph/DaintyWilder-Striptease-Onlyfans-Leaked-01-01
https://telegra.ph/Rachel-Martinez---Seattle--Washington--USA-10-21
https://168.exodirectory.com/index.php?topic=91399.new
https://168.exodirectory.com/index.php?topic=54539.new
https://telegra.ph/DaintyWilder-Crossdressing-Clips4sale-Leak-01-03
https://168.exodirectory.com/index.php?topic=65861.new
http://activewin.com/mac/comments.asp?ThreadIndex=62772
http://activewin.com/mac/comments.asp?ThreadIndex=24368

#304 By 4240821 (77.246.244.253) at 11/29/2024 6:59:04 AM
https://www.ameba.jp/profile/general/founterscrypor669/
https://www.ameba.jp/profile/general/prozsutirep94/
https://www.ameba.jp/profile/general/terslasnessprac200/
https://www.ameba.jp/profile/general/quiresecpo497/
https://www.ameba.jp/profile/general/coyversile280/
https://www.ameba.jp/profile/general/arterherzti492/
https://www.ameba.jp/profile/general/wasubschotherp397/
https://www.ameba.jp/profile/general/clearenesfai371/
https://www.ameba.jp/profile/general/dxinunenar71/
https://www.ameba.jp/profile/general/fulltualzahe960/

#305 By 4240821 (195.208.3.68) at 11/29/2024 12:21:37 PM
https://www.google.com.tr/amp/s/sluts.su/get/a172/a172bofhvxyynqgmrde.php
https://www.google.com.br/amp/s/lustful.su/get/a226/a226bbtfjyfgvzzjszm.php
https://www.google.com.ar/amp/s/lustful.su/get/a263/a263wwtsglnsobfxief.php
https://www.google.co.uz/amp/s/nsfw.su/get/a292/a292uwdcgwyrgyhguae.php
https://www.google.com.au/amp/s/sexonly.su/get/a73/a73dldqzmfudjibddn.php
https://www.google.com.au/amp/s/sexonly.top/get/a274/a274tejxwcqlufqjrxk.php
https://www.google.co.il/amp/s/sexonly.su/get/a83/a83zcgeyvziavxpmyy.php
https://www.google.co.uk/amp/s/lustful.su/get/a138/a138aveuqzezejzcmri.php
https://www.google.com.br/amp/s/sexonly.top/get/a23/a23klwzxvcgqwqrwug.php
https://www.google.co.nz/amp/s/nsfw.su/get/a19/a19elarvlhfgcgqtbs.php

#306 By 4240821 (212.193.138.162) at 11/29/2024 9:18:05 PM
https://www.google.ba/amp/s/sexonly.su/get/a119/a119fxleghqjhenzriv.php
https://www.google.bj/amp/s/sluts.su/get/a256/a256kpwzrcojilzirqx.php
https://www.google.bg/amp/s/lustful.su/get/a278/a278llimcpgfdoztdqg.php
https://www.google.bg/amp/s/sluts.su/get/a53/a53brlibkseabnazok.php
https://www.google.ba/amp/s/nsfw.su/get/a28/a28muxyuqzccjsgwlx.php
https://www.google.ba/amp/s/lustful.su/get/a48/a48wrmtqalqdbfzrhh.php
https://www.google.az/amp/s/nsfw.su/get/a183/a183sazkpqfknmhmwhy.php
https://www.google.ca/amp/s/lustful.su/get/a112/a112oinqmneninoydkf.php
https://www.google.bj/amp/s/sexonly.su/get/a133/a133nicedouraveenda.php
https://www.google.ca/amp/s/sexonly.su/get/a176/a176teylevezekvqvwn.php

#307 By 4240821 (195.208.3.68) at 11/30/2024 7:11:13 AM
https://www.ameba.jp/profile/general/craplunutca278/
https://www.ameba.jp/profile/general/quedrawcentbin3/
https://www.ameba.jp/profile/general/quedrawcentbin3/
https://www.ameba.jp/profile/general/festketnemul678/
https://www.ameba.jp/profile/general/tremactisi598/
https://www.ameba.jp/profile/general/clubonerac628/
https://www.ameba.jp/profile/general/seibidustchild118/
https://www.ameba.jp/profile/general/etperceublum566/
https://www.ameba.jp/profile/general/saddburvifeed346/
https://www.ameba.jp/profile/general/bingatasca979/

#308 By 4240821 (45.88.102.114) at 11/30/2024 4:19:04 PM
https://www.google.cl/amp/s/lustful.su/get/a151/a151zmxmgofaxzzbwgm.php
https://www.google.ch/amp/s/sluts.su/get/a94/a94slptdldafeehrqr.php
https://www.google.cg/amp/s/nsfw.su/get/a118/a118qllrvbkirgnezeh.php
https://www.google.ci/amp/s/sexonly.su/get/a27/a27ugxfrhiswuvlcui.php
https://www.google.cc/amp/s/sexonly.top/get/a258/a258lekfivtozjyocfq.php
https://www.google.cd/amp/s/sexonly.su/get/a142/a142rtierqruvlvfrem.php
https://www.google.cg/amp/s/sexonly.top/get/a10/a10yvhmepcnguefegk.php
https://www.google.cg/amp/s/sluts.su/get/a184/a184cjossthrdoadnuq.php
https://www.google.cl/amp/s/sluts.su/get/a226/a226trpxvtoecfoyngg.php
https://www.google.cd/amp/s/sexonly.su/get/a66/a66hchcgbkuoavyaoe.php

Write Comment
Return to News
  Displaying 301 through 308 of 308
Prev | First
  The time now is 1:17:18 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *