10
CVSSv2

CVE-2004-1284

Published: 10/01/2005 Updated: 11/07/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in the find_next_file function in playlist.c for mpg123 0.59r allows remote malicious users to execute arbitrary code via a crafted MP3 playlist.

Vulnerable Product Search on Vulmon Subscribe to Product

mpg123 mpg123 0.59m

mpg123 mpg123 0.59p

mpg123 mpg123 0.59q

mpg123 mpg123 0.59r

mpg123 mpg123 pre0.59s

mpg123 mpg123 0.59n

mpg123 mpg123 0.59o

Exploits

source: wwwsecurityfocuscom/bid/11958/info A remote client-side buffer overflow vulnerability affects mpg123 This issue is due to a failure of the application to properly validate the length of user-supplied strings prior to copying them into static process buffers An attacker may exploit this issue to execute arbitrary code with the p ...