CVE-2007-6401
Stack-based buffer overflow in mplayer2.exe in Microsoft Windows Media Player (WMP) 6.4, when used with the 3ivx 4.5.1 or 5.0.1 codec, allows remote attackers to execute arbitrary code via a certain .mp4 file, possibly a related issue to CVE-2007-6402.
- Affected products
- 3Ivx, Windows Media Player
- 3ivx mpeg-4 Codec
- = 4.5.1, 5.0.1
- Microsoft Windows Media Player
- = 6.4
- Fix
- Available
- CVSS 2.0
- 9.3 HIGH
- EPSS
- 29.7% (98th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2007-12-17
CVE-2007-6401 at NVD
1 known exploit for CVE-2007-6401
Proof-of-concept code and exploit modules indexed by Sploitus