PT-2004-2477 · Illustrate · Dbpoweramp Audio Player+1

Published

2004-12-31

·

Updated

2017-07-11

·

CVE-2004-1569

CVSS v2.0

4.0

Medium

VectorAV:N/AC:H/Au:N/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions dBpowerAMP Audio Player version 2.0 dbPowerAmp Music Converter version 10.0
Description The issue is related to a buffer overflow in certain executable files, allowing remote attackers to potentially cause a denial of service or execute arbitrary code. This can be achieved by using a .pls or .m3u playlist that contains long File1 (filename) fields.
Recommendations For dBpowerAMP Audio Player version 2.0, update to a version that fixes the buffer overflow issue in MusicConverter.exe, playlist.exe, and amp.exe. For dbPowerAmp Music Converter version 10.0, update to a version that fixes the buffer overflow issue in the affected executable files. As a temporary workaround, consider avoiding the use of .pls or .m3u playlists with long File1 fields until a patch is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-1569

Affected Products

Dbpoweramp Audio Player
Dbpoweramp Music Converter