MS.Media.Player.Code.Execution

Last Updated DateMar 09, 2010
Release DateAug 20, 2009
SeverityHigh
ImpactSystem Compromise: Remote attackers can gain control of vulnerable systems.
DescriptionThis indicates an attack attempt against a remote code-execution vulnerability in Microsoft Windows Media Player 11, which was caused by improper operation on a file that is streamed from a Server-Side Playlist (SSPL) on Windows Media Server.
Affected ProductsNortel Networks ENSM- Enterprise NMS 0
Nortel Networks ENSM - Enterprise NMS 10.5
Nortel Networks ENSM - Enterprise NMS 10.4
Microsoft Windows Media Player 11
HP Storage Management Appliance III
HP Storage Management Appliance II
HP Storage Management Appliance I
HP Storage Management Appliance 2.1
Recommended ActionsPlease refer to Microsoft advisory for patches or updates:
http://www.microsoft.com/technet/security/Bulletin/ms08-054.mspx
Common Vulnerabilities and Exposures (CVE)http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-2253
Microsoft Bulletin IDMS08-054   http://www.microsoft.com/technet/security/Bulletin/ms08-054.mspx
Reference/shttp://www.securityfocus.com/bid/30550 (BugTraq)
Reference: VID-15820