vendor:
M-Player
by:
JaMbA
7,8
CVSS
HIGH
Denial of Service
400
CWE
Product Name: M-Player
Affected Version From: 0.4
Affected Version To: 0.4
Patch Exists: Yes
Related CWE: N/A
CPE: a:m-player:m-player:0.4
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7
2012
M-Player 0.4 Local Denial of Service Vulnerability
M-Player 0.4 is vulnerable to a local denial of service attack. By creating a specially crafted MP3 file with a size of 2048 bytes, an attacker can cause the application to crash when the file is opened.
Mitigation:
Update to the latest version of M-Player 0.4