CVE-2014-4060
Published Aug 12, 2014
Last updated 6 years ago
Overview
- Description
- Use-after-free vulnerability in MCPlayer.dll in Microsoft Windows Media Center TV Pack for Windows Vista, Windows 7 SP1, and Windows Media Center for Windows 8 and 8.1 allows remote attackers to execute arbitrary code via a crafted Office document that triggers deletion of a CSyncBasePlayer object, aka "CSyncBasePlayer Use After Free Vulnerability."
- Source
- secure@microsoft.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.8
- Impact score
- 6.4
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-416
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:microsoft:windows_media_center:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B984EDFD-F9AB-4078-86B3-6111137BB9B0" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:microsoft:windows_8:-:*:*:*:professional:*:*:*", "vulnerable": false, "matchCriteriaId": "4C0BC4A5-327E-47DA-BABF-E0C15EB9FC08" }, { "criteria": "cpe:2.3:o:microsoft:windows_8.1:-:*:*:*:professional:*:*:*", "vulnerable": false, "matchCriteriaId": "B49DDD70-C922-4716-ABE6-E16B8A0F2A39" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:microsoft:windows_media_center_tv_pack:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "17AF69C5-CA33-4743-8D21-810D385749D3" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:enterprise:*:*:*", "vulnerable": false, "matchCriteriaId": "1B5F4BAD-7E02-4AB7-ADC4-03F6B2DE8400" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:enterprise_kn:*:*:*", "vulnerable": false, "matchCriteriaId": "1FE4F810-DE36-4C76-8CB3-4D322CDF56A0" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:enterprise_n:*:*:*", "vulnerable": false, "matchCriteriaId": "4BE12CDF-EC7A-4967-A68F-34D3AE6CB067" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:home_premium:*:*:*", "vulnerable": false, "matchCriteriaId": "682D7440-2611-461B-9B36-11D4B8864B71" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:home_premium_kn:*:*:*", "vulnerable": false, "matchCriteriaId": "FBD6FB04-7F93-4E6B-B5B0-FDE59ED28587" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:home_premium_n:*:*:*", "vulnerable": false, "matchCriteriaId": "38E7FA84-7081-4823-B1F3-C04DFD2DC9E6" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:professional:*:*:*", "vulnerable": false, "matchCriteriaId": "B9295BFB-15C2-4140-8F4D-48E5B00566E4" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:professional_kn:*:*:*", "vulnerable": false, "matchCriteriaId": "1C0C84E1-B179-496D-A80F-69CC56CC055D" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:professional_n:*:*:*", "vulnerable": false, "matchCriteriaId": "08CE9B20-DDCC-4ACC-9AE4-2DE6344F45B3" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:ultimate:*:*:*", "vulnerable": false, "matchCriteriaId": "6765AECA-F47C-48D0-8780-C59E65AE24C4" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:ultimate_kn:*:*:*", "vulnerable": false, "matchCriteriaId": "41E0EA59-7B4F-4188-94AF-325416F6FA76" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:ultimate_n:*:*:*", "vulnerable": false, "matchCriteriaId": "6352AA21-B143-4353-B762-ED894DFF4374" }, { "criteria": "cpe:2.3:o:microsoft:windows_vista:*:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "3852BB02-47A1-40B3-8E32-8D8891A53114" } ], "operator": "OR" } ], "operator": "AND" } ]