CVE-2006-0006
Heap-based buffer overflow in the bitmap processing routine in Microsoft Windows Media Player 7.1 on Windows 2000 SP4, Media Player 9 on Windows 2000 SP4 and XP SP1, and Media Player 10 on XP SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted bitmap (.BMP) file that specifies a size of 0 but contains additional data.
- Affected products
- Windows Media Player
- Microsoft Windows Media Player
- = 7.1, 9, 10
- Fix
- Available
- CVSS 2.0
- 9.3 HIGH
- EPSS
- 49.6% (99th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2006-02-14
CVE-2006-0006 at NVD
2 known exploits for CVE-2006-0006
Proof-of-concept code and exploit modules indexed by Sploitus