vendor:
Triologic Media Player
by:
Glafkos Charalambous
9.8
CVSS
CRITICAL
Buffer Overflow
119
CWE
Product Name: Triologic Media Player
Affected Version From: 8
Affected Version To: 8
Patch Exists: NO
Related CWE: CVE-2010-3131
CPE: a:triologic:media_player:8
Metasploit:
https://www.rapid7.com/db/vulnerabilities/mozilla-thunderbird-cve-2010-3131/, https://www.rapid7.com/db/vulnerabilities/mfsa2010-52-cve-2010-3131/, https://www.rapid7.com/db/vulnerabilities/mozilla-seamonkey-cve-2010-3131/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2010-3131/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2010-3131/
Platforms Tested: Windows XP SP3
2010
Triologic Media Player 8 (.m3u) Local Universal Unicode Buffer Overflow [SEH]
This exploit triggers a buffer overflow in Triologic Media Player 8 (.m3u) file format. It allows an attacker to execute arbitrary code on the target system.
Mitigation:
Update to a patched version of Triologic Media Player or use an alternative media player.