Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Ron Henry

#27383of 53,634
9.3Total CVSS
Vulnerabilities · 1
PT-2011-1353
9.3
2011-12-25
Unknown · Mini-Stream Ripper · CVE-2009-5109
**Name of the Vulnerable Software and Affected Versions** Mini-Stream Ripper version 3.0.1.1 **Description** The issue is a stack-based buffer overflow that allows remote attackers to execute arbitrary code. This is achieved by providing a long entry in a .pls file. **Recommendations** For Mini-Stream Ripper version 3.0.1.1, consider avoiding the use of .pls files with long entries until a patch is available. As a temporary workaround, restrict access to the function that processes .pls files to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.