2987Third-party advisory
http://securityreason.com/securityalert/2987 CVE-2007-4288
Microsoft Windows Media Player 11 - AU Divide-by-Zero Denial of Service
Record summary
CVE-2007-4288 has a selected CVSS score of 4.3; EIP currently links 1 catalogued exploit.
Description
Microsoft Windows Media Player 11 (wmplayer.exe) allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted .au file that triggers a divide-by-zero error, as demonstrated by iapetus.au.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBMicrosoft Windows Media Player 11 - AU Divide-by-Zero Denial of ServiceExploitDB exploitby A.Sawan & nophieNot analyzed1 file
References
6safehack.com
http://www.safehack.com/exp/mp/mplayer11.txt 20070808 DoS in Microsoft Media Player 11 on Win XP SP2mailing list
http://www.securityfocus.com/archive/1/475839/100/0/threaded 25236vdb entry
http://www.securityfocus.com/bid/25236 win-mediaplayer-au-dos(35878)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/35878 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2007-4288