vendor:
VUPlayer
by:
MC
7.5
CVSS
HIGH
Stack overflow
Unknown
CWE
Product Name: VUPlayer
Affected Version From: VUPlayer <= 2.49
Affected Version To: VUPlayer <= 2.49
Patch Exists: NO
Related CWE: Not mentioned
CPE: Not mentioned
Platforms Tested: Windows
Unknown
VUPlayer CUE Buffer Overflow
This module exploits a stack overflow in VUPlayer <= 2.49. When the application is used to open a specially crafted cue file, a buffer is overwritten allowing for the execution of arbitrary code.
Mitigation:
Unknown