Oval Definition:oval:org.mitre.oval:def:1352
Revision Date:2007-09-27Version:43
Title:Windows Media Player Code Execution Vulnerability Decompressing Skins
Description:Unspecified vulnerability in Microsoft Windows Media Player 7.1, 9, 10, and 11 allows remote attackers to execute arbitrary code via a skin file (WMZ or WMD) with crafted header information that is not properly handled during decompression, aka "Windows Media Player Code Execution Vulnerability Decompressing Skins."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2007-3035
Platform(s):Microsoft Windows 2000
Microsoft Windows Server 2003
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Windows Media Player
Definition Synopsis
  • Media Player v7.10
  • Windows Media Player v7.1 is installed.
  • AND the version of Wmpui.dll is less than 7.10.0.3080
  • Media Player v9
  • Windows Media Player v9 is installed.
  • AND the version of Wmp.dll is less than 9.0.0.3354
  • Media Player v10 on XP
  • Microsoft Windows XP SP2 or later is installed
  • AND Windows Media Player v10 is installed.
  • AND the version of Wmp.dll is less than 10.0.0.4058
  • Media Player v11 on XP
  • Microsoft Windows XP SP2 or later is installed
  • AND Windows Media Player v11 is installed.
  • AND the version of Wmp.dll is less than 11.0.5721.5230
  • Media Player v10 on S03,SP1
  • OS section
  • Microsoft Windows Server 2003 SP1 (x86) is installed
  • OR Microsoft Windows Server 2003 (x64) is installed
  • OR Microsoft Windows Server 2003 SP1 for Itanium is installed
  • AND Windows Media Player v10 is installed.
  • AND the version of Wmp.dll is less than 10.0.0.3709
  • Media Player v10 on S03,SP2
  • OS section
  • Microsoft Windows Server 2003 SP2 (x86) is installed
  • OR Microsoft Windows Server 2003 SP2 (x64) is installed
  • OR Microsoft Windows Server 2003 (ia64) SP2 is installed
  • AND Windows Media Player v10 is installed.
  • AND the version of Wmp.dll is less than 10.0.0.3998
  • Media Player v11 on Vista
  • Microsoft Windows Vista is installed
  • AND Windows Media Player v11 is installed.
  • AND the version of Wmp.dll is less than 11.0.6000.6336
  • BACK