CVE-2014-2671 describes a memory corruption vulnerability in Microsoft Windows Media Player (WMP) version 11.0.5721.5230, triggered by a specially crafted WAV file. This flaw could lead to a denial of service or potentially other unspecified impacts. With a CVSS score of 6.8, it is considered a medium-severity vulnerability, requiring user interaction (e.g., opening a malicious WAV file) but allowing remote exploitation. While there is no evidence of active exploitation in the wild for WMP, proof-of-concept exploits exist for similar memory corruption issues in other media players when processing WAV files. Community discussion and media coverage for this specific CVE are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11.0.5721.5230CPE matchmatch criteria | cpe:2.3:a:microsoft:windows_media_player:11.0.5721.5230:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.