COMMAND
Windows Media License Manager
SYSTEMS AFFECTED
Microsoft Windows Media Technologies 4.1 and 4.0.
PROBLEM
Following is based on a Security Bulletin from the Microsoft.
Windows Media License Manager is part of Windows Media Rights
Manager, a component of Windows Media Technologies that enables
content providers to distribute copyrighted digital media in
encrypted form. When Windows Media Player opens protected
digital media, it contacts the provider's server, presents the
user's license request information, and obtains a license that
allows it to play the media. However, a specially-malformed
license request can cause License Manager to halt, thereby
preventing legitimate subscribers from obtaining a license for
the same or other content hosted at this site.
The vulnerability does not in any way compromise the protection
provided by the encryption or prevent offline playing of content
that the user has already licensed. The server can be put back
into normal operation by restarting the License Manager.
Ranjiv Sharma originally reported this issue to Microsoft.
SOLUTION
Patch availability:
http://www.microsoft.com/Downloads/Release.asp?ReleaseID=19171