vendor:
jetAudio Basic
by:
ITDefensor Vulnerability Research Team
7,5
CVSS
HIGH
Use-after-free
416
CWE
Product Name: jetAudio Basic
Affected Version From: 8.1.3
Affected Version To: 8.1.3
Patch Exists: YES
Related CWE: unknown
CPE: a:jetaudio:jetaudio_basic
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7 x64, Windows Server 2008, Windows 7 x86
2014
jetAudio 8.1.3 Basic Use-after-free (Corrupted mp4) Crash POC
jetAudio 8.1.3 Basic is vulnerable to a use-after-free vulnerability when opening a specially crafted mp4 file. This can lead to a crash of the application.
Mitigation:
Update to the latest version of jetAudio Basic.