Security Alert: M.S.10-25 - Windows Media Unicast Service In-The-Wild Vulnerability Exploitation

On Monday, May 31, 2010, symantec Honeypots Captured exploitation of M.S.10-025 (B.I.D. 39351). The Vulnerability being Exploited is a remote stack-based, buffer-overflow that affects the Windows Media Unicast Service - "nsum.exe" - component. It only affects computers running Microsoft Windows 2000 that have Windows Media Services installed. Attackers can exploit the issue by sending specially-crafted Microsoft Media Server (M.S.S.) Transport Information Packets to executing Arbitrary Code.

The initial fix for this Vulnerability was released on April 21, 2010; however, it was determined to be ineffective. A Working Fix for this issue has been available since April 27, 2010. Users who have not applied this Update are encouraged to do so to prevent exploitation of this vulnerability.

Microsoft Windows Media Service Transport Information Packet Stack Buffer Overflow Vulnerability:
http://www.securityfocus.com/bid/39356.