Unrated severityNVD Advisory· Published Aug 14, 2006· Updated Jun 16, 2026
CVE-2006-4131
CVE-2006-4131
Description
Multiple buffer overflows in ArcSoft MMS Composer 1.5.5.6, and possibly earlier, and 2.0.0.13, and possibly earlier, allow remote attackers to cause a denial of service (crash) or execute arbitrary code via crafted MMS (Multimedia Messaging Service) messages that trigger the overflows in the (1) M-Notification.ind, (2) M-Retrieve.conf (Header and Body), or (3) SMIL parsers.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:arcsoft:mms_composer:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:arcsoft:mms_composer:*:*:*:*:*:*:*:*range: <=1.5.5.6
- (no CPE)range: <=1.5.5.6, <=2.0.0.13
Patches
Vulnerability mechanics
References
10- www.arcsoft.com/support/downloads/download_patches/mms.aspnvdPatch
- secunia.com/advisories/21426nvdVendor Advisory
- lists.grok.org.uk/pipermail/full-disclosure/2006-August/048614.htmlnvd
- securityreason.com/securityalert/1387nvd
- www.mulliner.org/pocketpc/CollinMulliner_defcon14_pocketpcphones.pdfnvd
- www.securityfocus.com/archive/1/442841/100/0/threadednvd
- www.securityfocus.com/bid/19451nvd
- www.vupen.com/english/advisories/2006/3261nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/28342nvd
- www.exploit-db.com/exploits/2156nvd
News mentions
0No linked articles in our index yet.