PT-2005-5313 · Illustrate · Dbpoweramp Music Converter
Published
2005-12-31
·
Updated
2008-09-05
·
CVE-2005-4648
CVSS v2.0
5.1
Medium
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Illustrate dBpowerAMP Music Converter versions 11.5 and earlier
Description
The issue is related to a buffer overflow that can be triggered by a user-assisted attack, potentially allowing the execution of arbitrary code or causing a denial of service. This can occur when processing a .m3u playlist with a long entry, possibly involving large field names.
Recommendations
For versions 11.5 and earlier, consider avoiding the use of .m3u playlists with long entries or large field names until a fix is available. As a temporary workaround, restrict the execution of
MusicConverter.exe, playlist.exe, and amp.exe to minimize the risk of exploitation.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Dbpoweramp Music Converter