Oval Definition:oval:org.mitre.oval:def:5531
Revision Date:2014-08-18Version:49
Title:Windows Media Playback Memory Corruption Vulnerability
Description:Microsoft Windows Media Format Runtime 9.0, 9.5, and 11; and Microsoft Media Foundation on Windows Vista Gold, SP1, and SP2 and Server 2008; allows remote attackers to execute arbitrary code via an MP3 file with crafted metadata that triggers memory corruption, aka "Windows Media Playback Memory Corruption Vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2009-2499
Platform(s):Microsoft Windows 2000
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Windows Media Format Runtime 11
Windows Media Format Runtime 9.0
Windows Media Format Runtime 9.5
Definition Synopsis
  • Windows Media Format Runtime 9.0 on Windows 2000 and Windows XP
  • OS Check
  • Microsoft Windows 2000 is installed
  • OR Microsoft Windows XP (32-bit) is installed
  • AND Wmvcore.dll for Windows Media Format 9.0 is installed.
  • AND the version of Wmvcore.dll is less than 9.0.0.3270
  • OR Windows Media Format Runtime 9.0 on Windows XP (x86)
  • Microsoft Windows XP (32-bit) is installed
  • AND Wmvcore.dll for Windows Media Format 9.0 is installed.
  • AND the version of Wmvcore.dll is less than 9.0.0.4506
  • OR Windows Media Format Runtime 9.5 on Windows XP (x86)
  • Microsoft Windows XP (32-bit) is installed
  • AND Wmvcore.dll for Windows Media Format 9.5 is installed.
  • AND the version of Wmvcore.dll is less than 10.0.0.3705
  • OR Windows Media Format Runtime 11 on Windows XP (x86)
  • Microsoft Windows XP (32-bit) is installed
  • AND Wmvcore.dll for Windows Media Format 11.0 is installed.
  • AND the version of Wmvcore.dll is less than 11.0.5721.5265
  • OR Windows Media Format Runtime 9.5 on Windows XP x64 ans Windows 2003 x64
  • OS Check
  • Microsoft Windows XP x64 is installed
  • OR Microsoft Windows Server 2003 (x64) is installed
  • AND Wmvcore.dll for Windows Media Format 9.5 on x64-bit platform is installed.
  • AND the version of %SystemRoot%\SysWOW64\Wmvcore.dll is less than 10.0.0.4005
  • OR Windows Media Format Runtime 11 on Windows XP x64
  • Microsoft Windows XP x64 is installed
  • AND Wmvcore.dll for Windows Media Format 11.0 on x64-bit platform is installed.
  • AND the version of %SystemRoot%\SysWOW64\Wmvcore.dll is less than 11.0.5721.5265
  • OR Windows Media Format Runtime 9.5 on Windows Server 2003 x86
  • Microsoft Windows Server 2003 (32-bit) is installed
  • AND Wmvcore.dll for Windows Media Format 9.5 is installed.
  • AND the version of Wmvcore.dll is less than 10.0.0.4005
  • OR Windows Media Format Runtime 11 on Windows Vista x86/x64
  • OS Check
  • Microsoft Windows Vista (32-bit) is installed
  • OR Microsoft Windows Vista x64 Edition is installed
  • AND Wmvcore.dll for Windows Media Format 11.0 is installed.
  • AND the version of Wmvcore.dll is less than 11.0.5721.5265
  • OR Windows Media Format Runtime 11 on Windows Vista x86/x64, Windows Server 2008 x86/x64
  • OS Check
  • Microsoft Windows Vista (32-bit) is installed
  • OR Microsoft Windows Vista x64 Edition is installed
  • OR Microsoft Windows Server 2008 (32-bit) is installed
  • OR Microsoft Windows Server 2008 (64-bit) is installed
  • AND Wmvcore.dll for Windows Media Format 11.0 is installed.
  • AND the version of Wmvcore.dll is less than 11.0.6001.7006
  • OR Windows Media Format Runtime 11 on Windows Vista x86/x64, Windows Server 2008 x86/x64
  • OS Check
  • Microsoft Windows Vista (32-bit) is installed
  • OR Microsoft Windows Vista x64 Edition is installed
  • OR Microsoft Windows Server 2008 (32-bit) is installed
  • OR Microsoft Windows Server 2008 (64-bit) is installed
  • AND Wmvcore.dll for Windows Media Format 11.0 is installed.
  • AND GDR or LDR Service branch
  • the version of Wmvcore.dll is less than 11.0.6002.18049
  • OR LDR
  • the version of Wmvcore.dll is greater than or equal 11.0.6002.22000
  • AND the version of Wmvcore.dll is less than 11.0.6002.22150
  • BACK