PT-2007-6053 · Stormplayer+2 · Stormplayer+2
Published
2007-09-18
·
Updated
2018-10-15
·
CVE-2007-4939
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Media Player Classic (MPC) versions 6.4.9.0 and earlier
mympc (aka CD-Storm) version 1.0.0.1
StormPlayer version 1.0.4
Description
The issue is related to a heap-based buffer overflow in the mplayerc.exe component. This can be triggered by a remote attacker using a specially crafted .avi file with specific values, such as an "indx truck size" of 0xffffffff, and certain wLongsPerEntry and
nEntriesInuse values. The potential impact includes a denial of service (application crash) or possibly the execution of arbitrary code.Recommendations
For Media Player Classic (MPC) versions 6.4.9.0 and earlier, update to a version later than 6.4.9.0.
For mympc (aka CD-Storm) version 1.0.0.1, consider disabling the use of .avi files until a patch is available.
For StormPlayer version 1.0.4, restrict access to files that could potentially trigger the buffer overflow until a fix is released.
Exploit
Fix
DoS
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Media Player Classic
Stormplayer
Mympc