CVE-2006-0006 - CVE House
Back to Database
Status published Critical CVE-2006-0006

Heap-based buffer overflow in the bitmap processing routine in Microsoft...

Vulnerability Description

Heap-based buffer overflow in the bitmap processing routine in Microsoft Windows Media Player 7.1 on Windows 2000 SP4, Media Player 9 on Windows 2000 SP4 and XP SP1, and Media Player 10 on XP SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted bitmap (.BMP) file that specifies a size of 0 but contains additional data.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-0006

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

windows media player, windows 2000, windows 2003 server, windows 98, windows 98se, windows me, windows xp
Vulnerable Versions:
7.1, 9, 10, r2

Timeline

Official Publish: February 14th, 2006
Last Modified: August 7th, 2024
Added to House: July 18th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.