vendor:
Free MP3 CD Ripper
by:
Gionathan 'John' Reale
7.8
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Free MP3 CD Ripper
Affected Version From: 2.6
Affected Version To: 2.6
Patch Exists: YES
Related CWE: N/A
CPE: 2.6
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 7 32bit
2018
Free MP3 CD Ripper 2.6 – ‘.wma’ Buffer Overflow (SEH)
Free MP3 CD Ripper 2.6 is vulnerable to a buffer overflow vulnerability when a specially crafted .wma file is opened. This can be exploited to execute arbitrary code by overwriting the SEH handler with a pointer to the malicious code. The malicious code can be injected by running the python exploit script which will create a new file with the name 'exploit.wma'. When the program is started and the file is opened, a calculator will pop up.
Mitigation:
The vendor has released a patch to address this vulnerability.