The drmstor.dll ActiveX object in Microsoft Windows Digital Rights Management System (DRM) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long parameter to the StoreLicense function, which triggers "memory corruption" and possibly a buffer overflow.
Link | Tags |
---|---|
http://securityreason.com/securityalert/1756 | third party advisory |
http://www.securityfocus.com/archive/1/448097/100/200/threaded | mailing list |