>> Microsoft Windows Media Player Remote Code Execution Vulnerability (MS06-024)
Title : Microsoft Windows Media Player Remote Code Execution Vulnerability (MS06-024) VUPEN ID : VUPEN/ADV-2006-2322 CVE ID : CVE-2006-0025
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-06-13
Technical Description
A vulnerability has been identified in Microsoft Windows Media Player, which could be exploited by remote attackers to take complete control of an affected system. This flaw is due to a buffer overflow error in the PNG processing code when handling malformed images, which could be exploited by attackers to execute arbitrary commands via a malicious web page.