vendor:
Viewpoint Media Player for IE
by:
shinnai
7.5
CVSS
HIGH
Stack Overflow
CWE
Product Name: Viewpoint Media Player for IE
Affected Version From: 3.3.2.26
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP Professional SP2 with Internet Explorer 7
Viewpoint Media Player for IE 3.2 (AxMetaStream.dll) Remote Stack Overflow
The AxMetaStream activex contains various methods which accept parameters as String. All these methods are vulnerable to a stack based buffer overflow when you pass an overly long (greater than 6999 characters).