CVE-2007-4288: Medium severity Microsoft Windows Media Player vulnerability
Published Aug 9, 2007
·Updated
Microsoft Windows Media Player 11 (wmplayer.exe) allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted .au file that triggers a divide-by-zero error, as demonstrated by iapetus.au.
Affected Software
1 affected component
Microsoft Windows Media Player=11
Event History
Aug 9, 2007
CVE Published
09:17 PM
Aug 10, 2007
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4288?
CVE-2007-4288 has a medium severity rating due to its potential to cause a denial-of-service condition.
2
How do I fix CVE-2007-4288?
To mitigate CVE-2007-4288, ensure you apply the latest security patches provided by Microsoft for Windows Media Player 11.
3
What types of attacks can be executed due to CVE-2007-4288?
CVE-2007-4288 allows remote attackers to crash the application, resulting in a denial of service.
4
Which software versions are affected by CVE-2007-4288?
CVE-2007-4288 specifically affects Microsoft Windows Media Player version 11.
5
What is the exploit method for CVE-2007-4288?
CVE-2007-4288 can be exploited through a specially crafted .au file that triggers a divide-by-zero error.