Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Abo Mohamed

#14459of 53,633
18.6Total CVSS
Vulnerabilities · 2
High
2
PT-2009-3144
9.3
2009-02-10
Elecard · Elecard Mpeg Player · CVE-2009-0491
**Name of the Vulnerable Software and Affected Versions** Elecard MPEG Player version 5.5 build 15884.081218 **Description** The issue is a stack-based buffer overflow that allows remote attackers to execute arbitrary code. This can be achieved by using a M3U file that contains a long URL. **Recommendations** For Elecard MPEG Player version 5.5 build 15884.081218, consider avoiding the use of M3U files with long URLs until a patch is available. As a temporary workaround, restrict the handling of M3U files to minimize the risk of exploitation.
PT-2009-2858
9.3
2009-01-20
Vuplayer · Vuplayer · CVE-2009-0174
**Name of the Vulnerable Software and Affected Versions** VUPlayer version 2.49 **Description** A stack-based buffer overflow issue allows remote attackers to execute arbitrary code via a long .asf URI in the `HREF` attribute of a `REF` element in a .asx file. **Recommendations** For VUPlayer version 2.49, at the moment, there is no information about a newer version that contains a fix for this vulnerability.