Windows is prone to an overflow condition. The Windows Media Unicast Service fails to properly sanitize user-supplied input resulting in a stack overflow. With a specially crafted FunnelConnect request, a remote attacker can potentially cause arbitrary code execution.
Currently, there are no known workarounds or upgrades to correct this issue. Microsoft has released a patch (MS10-025) to address this vulnerability, but then withdrew the patch when it was shown to not fix the problem.