vendor:
Free WMA MP3 Converter
by:
metacom
9,3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Free WMA MP3 Converter
Affected Version From: 1.8 Build 20140226
Affected Version To: 1.8 Build 20140226
Patch Exists: YES
Related CWE: N/A
CPE: a:eusing_software:free_wma_mp3_converter
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7, Windows 8.1
2014
Free WMA MP3 Converter 1.8 Buffer Overflow
A buffer overflow vulnerability exists in Free WMA MP3 Converter 1.8 Build 20140226. The vulnerability is caused due to a boundary error when handling a specially crafted .wav file. This can be exploited to cause a stack-based buffer overflow by e.g. enticing a user to open a malicious .wav file. Successful exploitation may allow execution of arbitrary code.
Mitigation:
Upgrade to the latest version of Free WMA MP3 Converter.