CVE-2006-0025: Buffer Overflow
Published Jun 13, 2006
·Updated
Stack-based buffer overflow in Microsoft Windows Media Player 9 and 10 allows remote attackers to execute arbitrary code via a PNG image with a large chunk size.
Affected Software
2 affected components
Microsoft Windows Media Player=10
Microsoft Windows Media Player=9
Remediation
Patch Available
Patch Available
Event History
Jun 13, 2006
CVE Published
07:06 PM
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-0025?
CVE-2006-0025 has a critical severity rating due to the potential for remote code execution.
2
How do I fix CVE-2006-0025?
To mitigate CVE-2006-0025, users should upgrade to the latest version of Windows Media Player or apply available security patches.
3
Who is affected by CVE-2006-0025?
CVE-2006-0025 affects users of Microsoft Windows Media Player versions 9 and 10.
4
What type of vulnerability is CVE-2006-0025?
CVE-2006-0025 is a stack-based buffer overflow vulnerability that can be triggered by malicious PNG images.
5
Can CVE-2006-0025 be exploited through the internet?
Yes, CVE-2006-0025 can be exploited remotely via specially crafted PNG images delivered over the internet.