vendor:
Xion
by:
corelanc0d3r and dijital1
9,3
CVSS
HIGH
Stack Buffer Overflow
119
CWE
Product Name: Xion
Affected Version From: Xion 1.0.125
Affected Version To: Xion 1.0.125
Patch Exists: YES
Related CWE: N/A
CPE: o:xion_audio_solutions:xion_1.0.125
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3 En Professional - VirtualBox
2010
Xion 1.0.125 Stack Buffer Overflow
Xion 1.0.125 is vulnerable to a stack buffer overflow when a specially crafted .m3u file is opened. The vulnerability is caused due to a boundary error when copying user supplied data into a fixed length stack buffer. This can be exploited to cause a stack-based buffer overflow by e.g. tricking a user into opening a specially crafted .m3u file.
Mitigation:
Upgrade to the latest version of Xion 1.0.125