vendor:
Hanso Player
by:
xsploited security
7,5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: Hanso Player
Affected Version From: 1.3.0
Affected Version To: 1.3.0
Patch Exists: YES
Related CWE: N/A
CPE: a:hansotools:hanso_player
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP Pro SP3
2010
Hanso Player Version 1.3.0 (.m3u) DoS
Hanso Player version 1.3.0 is vulnerable to a Denial of Service attack when a specially crafted .m3u file is opened. The application crashes when a file containing 1337 bytes of 'A' characters is opened. This vulnerability can be exploited by an attacker to crash the application.
Mitigation:
Upgrade to the latest version of Hanso Player.