Vulnerability Description
Microsoft Windows Media Player 11 (wmplayer.exe) allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted .au file that triggers a divide-by-zero error, as demonstrated by iapetus.au.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows Media Player | 11 |
References
- http://securityreason.com/securityalert/2987
- http://www.safehack.com/exp/mp/mplayer11.txtURL Repurposed
- http://www.securityfocus.com/archive/1/475839/100/0/threaded
- http://www.securityfocus.com/bid/25236Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35878
- http://securityreason.com/securityalert/2987
- http://www.safehack.com/exp/mp/mplayer11.txtURL Repurposed
- http://www.securityfocus.com/archive/1/475839/100/0/threaded
- http://www.securityfocus.com/bid/25236Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35878
FAQ
What is CVE-2007-4288?
CVE-2007-4288 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Microsoft Windows Media Player 11 (wmplayer.exe) allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted .au file that triggers a divide-by-zero error, as ...
How severe is CVE-2007-4288?
CVE-2007-4288 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-4288?
Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Windows Media Player.