vendor:
Quintessential Player
by:
Greg Linares
7.5
CVSS
HIGH
Memory Corruption
119
CWE
Product Name: Quintessential Player
Affected Version From: <= 4.50.1.82
Affected Version To: 4.50.1.82
Patch Exists: NO
Related CWE:
CPE: a:quintessential_player:quintessential_player:4.50.1.82
Platforms Tested:
2006
0-day Quintessential Player Playlist Denial Of Service PoC
Quintessential Player 4.50.1.82 and lower experience a memory corruption when attempting to parse out malformed Playlist files. This possibly could lead to execution of code. The proof of concept is provided in PLS format.
Mitigation:
Update to a version higher than 4.50.1.82 or use alternative media player software.