vendor:
Fat Player
by:
ahwak2000
7,2
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Fat Player
Affected Version From: 0.6b
Affected Version To: 0.6b
Patch Exists: YES
Related CWE: N/A
CPE: a:fat_player:fat_player:0.6b
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2009
Fat Player 0.6b(wav) Universal Local Buffer Exploit
Fat Player 0.6b is vulnerable to a local buffer overflow vulnerability. By sending a specially crafted WAV file, an attacker can overwrite the return address of the stack and execute arbitrary code. This exploit was tested on Windows XP SP3 (English).
Mitigation:
Upgrade to the latest version of Fat Player.