PT-2011-3944 · Pandoratv · Mplayer

Published

2011-09-02

·

Updated

2017-08-29

·

CVE-2011-2594

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions KMPlayer versions 3.0.0.1441 and possibly other versions
Description A heap-based buffer overflow issue allows remote attackers to execute arbitrary code via a playlist (.KPL) file with a long Title field.
Recommendations For KMPlayer version 3.0.0.1441, avoid using the playlist (.KPL) file feature until a patch is available. As a temporary workaround, consider restricting the use of .KPL files to minimize the risk of exploitation.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-2594

Affected Products

Mplayer