MS06-005: Vulnerability in Windows Media Player could allow remote code execution (911565)



The information in this article applies to:

  • Microsoft Windows Media Player 9 Series, when used with:
    • Microsoft Windows Server 2003, Web Edition
    • Microsoft Windows Server 2003, Standard Edition
    • Microsoft Windows Server 2003, Datacenter Edition
    • Microsoft Windows Server 2003, Enterprise Edition
    • Microsoft Windows Small Business Server 2003, Premium Edition
    • Microsoft Windows Small Business Server 2003, Standard Edition
    • Microsoft Windows Server 2003 R2 Standard Edition (32-bit x86)
    • Microsoft Windows Server 2003 R2 Datacenter Edition (32-Bit x86)
    • Microsoft Windows Server 2003 R2 Enterprise Edition (32-Bit x86)
    • Microsoft Windows XP Home Edition SP1
    • Microsoft Windows XP Professional SP1
    • Microsoft Windows XP Tablet PC Edition
    • Microsoft Windows XP Media Center Edition
    • Microsoft Windows XP Home Edition SP2
    • Microsoft Windows XP Professional SP2
    • Microsoft Windows XP Tablet PC Edition 2005
    • Microsoft Windows XP Media Center Edition 2005
    • Microsoft Windows 2000 Server SP4
    • Microsoft Small Business Server 2000
  • Microsoft Windows Media Player 10, when used with:
    • Microsoft Windows XP Home Edition SP1
    • Microsoft Windows XP Professional SP1
    • Microsoft Windows XP Tablet PC Edition
    • Microsoft Windows XP Media Center Edition
    • Microsoft Windows XP Home Edition SP2
    • Microsoft Windows XP Professional SP2
    • Microsoft Windows XP Tablet PC Edition 2005
    • Microsoft Windows XP Media Center Edition 2005
  • Microsoft Windows Media Player 7.1, when used with:
    • Microsoft Windows 2000 Server SP4
    • Microsoft Small Business Server 2000
  • Microsoft Windows Media Player for Windows XP, when used with:
    • Microsoft Windows XP Home Edition SP1
    • Microsoft Windows XP Professional SP1
    • Microsoft Windows XP Tablet PC Edition
    • Microsoft Windows XP Media Center Edition

Microsoft has released security bulletin MS06-005. This security bulletin contains all the relevant information about the associated security update, including file manifest information and deployment options. To view the complete security bulletin, visit one of the following Microsoft Web sites:

Known Issues

Because of this issue, MS06-005 was re-released in April to address Microsoft Windows Media Player 10. The original MS06-005 addresses the original vulnerability. The re-release of MS06-005 only resolves the Windows Media Player 10 issue documented in the Knowledge Base article 912226. The re-released version of Wmp.dll is 10.0.0.4019. For more information about issues when you try to seek, to fast rewind, or to fast forward in Windows Media Player 10 after you apply some updates, click the following article number to view the article in the Microsoft Knowledge Base:

912226 After you apply some updates, you may experience some issues when you try to seek, to fast rewind, or to fast forward in Windows Media Player 10


Modification Type:MinorLast Reviewed:7/26/2006
Keywords:kbQFE kbSecurity KbSECBulletin KbSECVulnerability kbWinXPpreSP2fix kbBug kbfix kbWinServ2003preSP1fix kbWin2000preSP5fix kbWinNT400PreSP7Fix kbHotfixServer kbpubtypekc KB911565 kbAudDeveloper kbAudITPRO