CVE-2006-4702
Microsoft WMP 6.4 & Windows XP/Server 2003 - Buffer Overflow
Title source: llmDescription
Buffer overflow in the Windows Media Format Runtime in Microsoft Windows Media Player (WMP) 6.4 and Windows XP SP2, Server 2003, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted Advanced Systems Format (ASF) file.
References (7)
Core 7
Core References
Vendor Advisory x_refsource_confirm
http://support.avaya.com/elmodocs2/security/ASA-2006-274.htm
Vendor Advisory vendor-advisory
x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-078
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/21505
US Government Resource third-party-advisory
x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA06-346A.html
Third Party Advisory, VDB Entry vdb-entry
signature
x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A536
Third Party Advisory, VDB Entry vendor-advisory
x_refsource_hp
http://www.securityfocus.com/archive/1/454969/100/200/threaded
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://securitytracker.com/id?1017372
Scores
EPSS
0.2738
EPSS Percentile
97.9%
Details
Status
published
Products (4)
microsoft/windows_2003_server
gold
microsoft/windows_2003_server
sp1
microsoft/windows_media_player
6.4
microsoft/windows_xp
Published
Dec 13, 2006
Tracked Since
Feb 18, 2026