Vulnerabilities > CVE-2007-6236 - Numeric Errors vulnerability in Microsoft Windows Media Player 11

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
microsoft
CWE-189
exploit available

Summary

Microsoft Windows Media Player (WMP) allows remote attackers to cause a denial of service (application crash) via a certain AIFF file that triggers a divide-by-zero error, as demonstrated by kr.aiff.

Vulnerable Configurations

Part Description Count
Application
Microsoft
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionWindows Media Player AIFF Divide By Zero Exception DoS PoC. CVE-2007-6236. Dos exploit for windows platform
fileexploits/windows/dos/4682.c
idEDB-ID:4682
last seen2016-01-31
modified2007-11-29
platformwindows
port
published2007-11-29
reporterGil-Dong / Woo-Chi
sourcehttps://www.exploit-db.com/download/4682/
titleWindows Media Player AIFF Divide By Zero Exception DoS PoC
typedos