PT-2009-3130 · Multimedia Soft · Adjmmseng.Dll

H4Ck3R#47

·

Publicado

2009-02-08

·

Atualizado

2018-10-11

·

CVE-2009-0476

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions MultiMedia Soft AdjMmsEng.dll versions 7.11.1.0 through 7.11.2.7
Description The issue is a stack-based buffer overflow that allows remote attackers to execute arbitrary code via a long string in a playlist (.pls) file. This can be exploited by providing a specially crafted .pls file.
Recommendations For versions 7.11.1.0 through 7.11.2.7, consider restricting the handling of .pls files or limiting the length of strings that can be processed by the AdjMmsEng.dll component to minimize the risk of exploitation.

Exploit

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2009-0476

Produtos afetados

Adjmmseng.Dll