Vulnerability compromises Explorer multimedia handling

By Patrick Gray
19 December 2002 02:40 PM
Tags: foundstone, multimedia, explorer, gray, patrick, buffer, compromise, winamp
Foundstone, an Internet security company, have identified a critical vulnerability in the way Explorer handles MP3 and WMA multimedia files in Windows XP.

The buffer overflow vulnerability allows attackers to execute arbitrary code, hence compromising the targeted system. The security flaw is very easy to exploit.

"The MP3 does not need to be played, it simply needs to be stored in a folder that is browsed to, such as an MP3 download folder, the desktop, or a NetBIOS share," Foundstone said in their advisory.

"Explorer automatically reads file attributes regardless of whether or not the user actually highlights, clicks on, reads, or opens the file... This vulnerability is also exploitable via Internet Explorer by loading a malicious Web site."

"...if the user browses to a malicious Web site with Internet Explorer directly, the attack will work regardless of the Internet Explorer security settings."

Microsoft have released a fix, and have rated the vulnerability as critical.

Windows 2000 and other Microsoft operating systems are not affected.

Foundstone also released an advisory that outlines similar flaws in Winamp, the popular mp3 player software. "One buffer overflow exists in Winamp 2.81 (latest 2.x release) and two buffer overflows exist in Winamp 3.0 (latest 3.x release)." it said. Nullsoft, the makers of Winamp, have released patched versions of their software.

Advertisement

Talkback 0 comments

Latest Videos

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Suzanne Tindal Sick of broken tender sites
    Some of the state governments desperately need to invest in more user-friendly tender sites so that looking for information on government tenders doesn't have to be a game of blind man's bluff.
  • Array Cyberwar: What is it good for?
    In this week's episode, Cyberwar. What is Australia's place in the world of digital warfare? What are the implications for the NBN?
  • Array Is wholesale-only backhaul just a pipedream?
    The potential acquisition of Pipe Networks by SP Telemedia has raised the question about whether vertically integrated backhaul providers will mean higher wholesale prices for ISP customers.
  • More blogs »

Tags

Back to top

Featured