Last week researcher Laurent Gaffie wrote on the BugTraq security mailing list, claiming a flaw in Windows Media Player 9, 10, and 11, according to CNET. He said the flaw would allow a hacker to send a malformed file (WAV, Midi, or SND) to compromise PCs running XP or Vista. He even included proof of concept code that he claimed would allow remote code execution.
Now Microsoft has investigated those claims and pronounced them false, and slammed Gaffie on its Security Vulnerability Research & Defense blog for publishing without contacting the company first.

