vendor:
Free MP3 CD Ripper
by:
Richard leahy
7,5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Free MP3 CD Ripper
Affected Version From: 2.6
Affected Version To: 2.6
Patch Exists: YES
Related CWE: N/A
CPE: 2.6
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP2
2010
Exploit Title: Free MP3 CD Ripper 2.6 0 day
A buffer overflow vulnerability exists in Free MP3 CD Ripper 2.6. An attacker can exploit this vulnerability by opening the application, selecting File -> WAV Converter -> WAV to MP3, and then printing the contents into a text file. Saving the text file as a .wav and then opening the .wav file can trigger the vulnerability.
Mitigation:
Upgrade to the latest version of Free MP3 CD Ripper.