Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Ron Henry

#27362de 53,635
9.3CVSS total
Vulnerabilidades · 1
PT-2011-1353
9.3
2011-12-25
Unknown · Mini-Stream Ripper · CVE-2009-5109
**Name of the Vulnerable Software and Affected Versions** Mini-Stream Ripper version 3.0.1.1 **Description** The issue is a stack-based buffer overflow that allows remote attackers to execute arbitrary code. This is achieved by providing a long entry in a .pls file. **Recommendations** For Mini-Stream Ripper version 3.0.1.1, consider avoiding the use of .pls files with long entries until a patch is available. As a temporary workaround, restrict access to the function that processes .pls files to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.