The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft Security Bulletin MS01-056: Windows Media Player .ASF Processor Contains Unchecked Buffer
Time: 05:39 EST/10:39 GMT | News Source: Microsoft TechNet Security | Posted By: Matthew Sabean

One of the streaming media formats supported by Windows Media Player is Advanced Streaming Format (ASF). A security vulnerability occurs in Windows Media Player 6.4 because the code that processes ASF files contains an unchecked buffer. By creating a specially malformed ASF file and inducing a user to play it, an attacker could overrun the buffer, with either of two results: in the simplest case, Windows Media Player 6.4 would fail; in the more complex case, code chosen by the attacker could be made to run on the user’s computer, with the privileges of the user. The scope of this vulnerability is rather limited. It affects only Windows Media Player 6.4, and can only be exploited by the user opening and deliberately playing an ASF file. There is no capability to exploit this vulnerability via email or a web page.

However, the patch eliminates additional vulnerabilities. Specifically, it eliminates all known vulnerabilities affecting Windows Media Player 6.4 - discussed in Microsoft Security Bulletins MS00-090, MS01-029, and MS01-042 - as well as some additional variants of these vulnerabilities that were discovered internally by Microsoft. Some of these vulnerabilities could be exploited via email or a web page. In addition, some affect components of Windows Media Player 6.4 that, for purposes of backward compatibility, ship with Windows Media Player 7, and 7.1. We therefore recommend that customers running any of these versions of Windows Media Player apply the patch to ensure that they are fully protected against all known vulnerabilities. Windows Media Player for Windows XP includes components of Windows Media Player 6.4, but they are not affected by the ASF buffer overrun or by any of the other vulnerabilities discussed in the security bulletins listed above. However, the version 6.4 components that ship with Windows Media Player for Windows XP are affected by some of the newly discovered variants of these vulnerabilities. Rather than installing this patch, however, we recommend that customers install the 25 October 2001 Critical Update for Windows XP.

Patch availability:
Windows Media Player 6.4, 7, or 7.1:
http://download.microsoft.com/download/winmediaplayer/Update/308567/WIN98MeXP/EN-US/wm308567.exe
Windows Media Player for Windows XP:
http://windowsupdate.com

Write Comment
Return to News

  Displaying 751 through 759 of 759
Prev | First
  The time now is 6:30:37 PM ET.
Any comment problems? E-mail us
#751 By 4240821 (82.115.4.100) at 1/6/2026 7:10:55 AM
https://www.pillowfort.social/posts/6756065
https://www.pillowfort.social/posts/6756010
https://www.pillowfort.social/posts/6755908
https://www.pillowfort.social/posts/6755846
https://www.pillowfort.social/posts/6755577
https://www.pillowfort.social/posts/6755414
https://www.pillowfort.social/posts/6755335
https://www.pillowfort.social/posts/6755196
https://www.pillowfort.social/posts/6754992
https://www.pillowfort.social/posts/6754822

#752 By 4240821 (82.115.4.100) at 1/8/2026 4:16:53 PM
https://www.pillowfort.social/posts/6986626
https://www.pillowfort.social/posts/6986499
https://www.pillowfort.social/posts/6986388
https://www.pillowfort.social/posts/6986273
https://www.pillowfort.social/posts/6986124
https://www.pillowfort.social/posts/6986010
https://www.pillowfort.social/posts/6985885
https://www.pillowfort.social/posts/6985827
https://www.pillowfort.social/posts/6985767
https://www.pillowfort.social/posts/6985661

#753 By 4240821 (82.115.4.100) at 1/8/2026 4:49:43 PM
https://www.pillowfort.social/posts/7060506
https://www.pillowfort.social/posts/7060443
https://www.pillowfort.social/posts/7060391
https://www.pillowfort.social/posts/7060322
https://www.pillowfort.social/posts/7060233
https://www.pillowfort.social/posts/7060183
https://www.pillowfort.social/posts/7060159
https://www.pillowfort.social/posts/7060068
https://www.pillowfort.social/posts/7060003
https://www.pillowfort.social/posts/7059925

#754 By 4240821 (82.115.4.100) at 1/8/2026 11:33:39 PM
https://www.pillowfort.social/posts/6767597
https://www.pillowfort.social/posts/6767535
https://www.pillowfort.social/posts/6767402
https://www.pillowfort.social/posts/6767312
https://www.pillowfort.social/posts/6767168
https://www.pillowfort.social/posts/6767023
https://www.pillowfort.social/posts/6766777
https://www.pillowfort.social/posts/6766581
https://www.pillowfort.social/posts/6766360
https://www.pillowfort.social/posts/6766041

#755 By 4240821 (82.115.4.100) at 1/9/2026 9:29:44 AM
https://www.pillowfort.social/posts/7058570
https://www.pillowfort.social/posts/7058436
https://www.pillowfort.social/posts/7058377
https://www.pillowfort.social/posts/7058268
https://www.pillowfort.social/posts/7058100
https://www.pillowfort.social/posts/7057911
https://www.pillowfort.social/posts/7057772
https://www.pillowfort.social/posts/7057689
https://www.pillowfort.social/posts/7057587
https://www.pillowfort.social/posts/7057429

#756 By 4240821 (82.115.4.230) at 1/11/2026 4:50:23 PM
https://www.pillowfort.social/posts/6492450
https://www.pillowfort.social/posts/6492296
https://www.pillowfort.social/posts/6492156
https://www.pillowfort.social/posts/6491954
https://www.pillowfort.social/posts/6491834
https://www.pillowfort.social/posts/6491755
https://www.pillowfort.social/posts/6491605
https://www.pillowfort.social/posts/6491467
https://www.pillowfort.social/posts/6491324
https://www.pillowfort.social/posts/6491178

#757 By 4240821 (82.115.4.230) at 1/12/2026 3:48:28 AM
https://myvidplay.com/d/4h2ew607gr86
https://myvidplay.com/d/8t1fbd748dr5
https://myvidplay.com/d/duatsq1j7xpg
https://myvidplay.com/d/y4sqks3po3i3
https://myvidplay.com/d/ho37ztv0nn2z
https://myvidplay.com/d/i5r6ri8wff9b
https://myvidplay.com/d/ozh1gxg1gqya
https://myvidplay.com/d/rmw8nbptcs14
https://myvidplay.com/d/nzq4p3qdag7o
https://myvidplay.com/d/3cnts8r46h4g

#758 By 4240821 (82.115.4.230) at 1/12/2026 6:08:44 PM
https://myvidplay.com/d/gxlquz4ka6qn
https://myvidplay.com/d/5zjuy4sehukl
https://myvidplay.com/d/prjjrvmiiiu8
https://myvidplay.com/d/5ntk1ku4qnwc
https://myvidplay.com/d/cdr9sbzv5k8v
https://myvidplay.com/d/oaxhq79u009y
https://myvidplay.com/d/9ukziiam3rk3
https://myvidplay.com/d/fyq4jh7buw66
https://myvidplay.com/d/t4vihzqsp250
https://myvidplay.com/d/12kbcfzd8hja

#759 By 4240821 (82.115.4.230) at 1/13/2026 4:41:11 AM
https://myvidplay.com/d/eyu17q17k9xv
https://myvidplay.com/d/t5roahp705jq
https://myvidplay.com/d/9pado2g1gfko
https://myvidplay.com/d/nn1seyyj3qby
https://myvidplay.com/d/7vbv0vyvcvpl
https://myvidplay.com/d/phve0gfm64vu
https://myvidplay.com/d/d84kq8wh8mf4
https://myvidplay.com/d/ej3upll9rrrg
https://myvidplay.com/d/du0gcca4f8lo
https://myvidplay.com/d/bra2p926gl7r

Write Comment
Return to News
  Displaying 751 through 759 of 759
Prev | First
  The time now is 6:30:37 PM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *