The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft Security Bulletin MS01-056: Windows Media Player .ASF Processor Contains Unchecked Buffer
Time: 05:39 EST/10:39 GMT | News Source: Microsoft TechNet Security | Posted By: Matthew Sabean

One of the streaming media formats supported by Windows Media Player is Advanced Streaming Format (ASF). A security vulnerability occurs in Windows Media Player 6.4 because the code that processes ASF files contains an unchecked buffer. By creating a specially malformed ASF file and inducing a user to play it, an attacker could overrun the buffer, with either of two results: in the simplest case, Windows Media Player 6.4 would fail; in the more complex case, code chosen by the attacker could be made to run on the user’s computer, with the privileges of the user. The scope of this vulnerability is rather limited. It affects only Windows Media Player 6.4, and can only be exploited by the user opening and deliberately playing an ASF file. There is no capability to exploit this vulnerability via email or a web page.

However, the patch eliminates additional vulnerabilities. Specifically, it eliminates all known vulnerabilities affecting Windows Media Player 6.4 - discussed in Microsoft Security Bulletins MS00-090, MS01-029, and MS01-042 - as well as some additional variants of these vulnerabilities that were discovered internally by Microsoft. Some of these vulnerabilities could be exploited via email or a web page. In addition, some affect components of Windows Media Player 6.4 that, for purposes of backward compatibility, ship with Windows Media Player 7, and 7.1. We therefore recommend that customers running any of these versions of Windows Media Player apply the patch to ensure that they are fully protected against all known vulnerabilities. Windows Media Player for Windows XP includes components of Windows Media Player 6.4, but they are not affected by the ASF buffer overrun or by any of the other vulnerabilities discussed in the security bulletins listed above. However, the version 6.4 components that ship with Windows Media Player for Windows XP are affected by some of the newly discovered variants of these vulnerabilities. Rather than installing this patch, however, we recommend that customers install the 25 October 2001 Critical Update for Windows XP.

Patch availability:
Windows Media Player 6.4, 7, or 7.1:
http://download.microsoft.com/download/winmediaplayer/Update/308567/WIN98MeXP/EN-US/wm308567.exe
Windows Media Player for Windows XP:
http://windowsupdate.com

Write Comment
Return to News

  Displaying 676 through 679 of 679
Prev | First
  The time now is 4:04:50 PM ET.
Any comment problems? E-mail us
#676 By 4240821 (82.115.4.230) at 11/15/2025 1:45:30 PM
https://sexonly.top/activ1hacgg4dff
https://lustful.su/activgcega2fhgd
https://nsfw.su/activhf3ahd4c3h
https://sexonly.top/activga41b5dff4
https://sluts.su/activ4d4cedcd4a
https://smutty.su/activaf5efd3a1d
https://sluts.su/activh2f35gd1fb
https://smutty.su/activg5b1feg12d
https://lustful.su/activahe3hbahc3
https://sexonly.su/activbd2cec3bc3

#677 By 4240821 (82.115.4.230) at 11/16/2025 12:44:11 AM
https://smutty.su/activd3bhgheb43
https://sexonly.su/activ2h5dcbb3c3
https://sluts.su/activch4b2che51
https://sluts.su/activd43eafc4ch
https://smutty.su/activ1544444f4b
https://sexonly.top/activ15e3a2554d
https://nsfw.su/activ5acdg32hd2
https://sexonly.top/activ4c11bc15d4
https://nsfw.su/activecf4aehaed
https://sexonly.su/activgc54h131fb

#678 By 4240821 (82.115.4.230) at 11/17/2025 5:22:04 PM
https://smutty.su/activd1dbege52g
https://sexonly.su/activg4hacd53ba
https://lustful.su/activb4g5hhgh3f
https://lustful.su/activ34g2521f25
https://sexonly.top/activh4aec12a12
https://lustful.su/activhc244ebeg3
https://lustful.su/activa2be1hf3af
https://lustful.su/activhhabgd3c24
https://sexonly.su/activ3f4b3hc131
https://lustful.su/activhe45543111

#679 By 4240821 (82.115.4.230) at 11/18/2025 11:48:50 AM
https://sexonly.su/activ51c55h3h1c
https://lustful.su/activdehee2e4g1
https://smutty.su/activcgbaef5bdc
https://sexonly.su/activ3dd33ggagb
https://nsfw.su/activ3gf4315ec1
https://lustful.su/activa2f32fgc1h
https://lustful.su/activh2dgfaa3g3
https://lustful.su/activdeef41bdc2
https://smutty.su/activf14hca3gae
https://nsfw.su/activ5ee5gbc4f3

Write Comment
Return to News
  Displaying 676 through 679 of 679
Prev | First
  The time now is 4:04:50 PM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *