PT-2008-6787 · Coolplayer · Coolplayer

Encrypt3D.M!Nd

+1

·

Published

2008-12-26

·

Updated

2018-10-11

·

CVE-2008-5735

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions CoolPlayer versions 2.17 through 2.19
Description The issue is a stack-based buffer overflow in the skin.c file, which allows remote attackers to execute arbitrary code. This is achieved by providing a large PlaylistSkin value in a skin file.
Recommendations For CoolPlayer versions 2.17 through 2.19, update to a version that contains a fix for this issue to prevent remote code execution.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-5735

Affected Products

Coolplayer