vendor:
SPlayer
by:
xsploitedsec
7.5
CVSS
HIGH
Buffer Overflow
Buffer Overflow
CWE
Product Name: SPlayer
Affected Version From: <= 3.7 (build 2055)
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP SP3 Eng
2011
SPlayer <= 3.7 (build 2055) Buffer Overflow Exploit
SPlayer is vulnerable to a remote buffer overflow when parsing a specially crafted HTTP header from a remote server. The bug is triggered due to the "Content-Type:" field being passed to the wcstol() function, prior to any bounds checking. This could allow an attacker to trick a remote user into opening a specially crafted playlist file, containing a URL pointing to a malicious web server.
Mitigation:
Update to a version of SPlayer above 3.7 (build 2055) that includes a patch for the buffer overflow vulnerability.