vendor:
CoolPlayer Portable
by:
Gold_m and stack
9,3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: CoolPlayer Portable
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP2
2009
CoolPlayer Portable(m3u) Buffer Overflow exploit
CoolPlayer Portable is vulnerable to a buffer overflow vulnerability when processing specially crafted .m3u files. An attacker can exploit this vulnerability to execute arbitrary code on the target system. The vulnerability is caused due to a boundary error when copying data from the .m3u file into a fixed-length buffer. This can be exploited to cause a stack-based buffer overflow by sending a specially crafted .m3u file with an overly long string. Successful exploitation of this vulnerability can result in arbitrary code execution in the context of the user running the vulnerable application.
Mitigation:
Upgrade to the latest version of CoolPlayer Portable.