vendor:
SMPlayer
by:
Malav Vyas
N/A
CVSS
N/A
Denial of Service
CWE
Product Name: SMPlayer
Affected Version From: 19.5.2000
Affected Version To: 19.5.2000
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows 7 (64 bit)
Unknown
SMPlayer 19.5.0 – Denial of Service (PoC)
This exploit creates a malicious .m3u file that contains 25,000 'A' characters. Opening this file in SMPlayer causes a buffer overflow, resulting in a Denial of Service attack.
Mitigation:
Unknown