5
CVSSv2

CVE-2007-6609

Published: 31/12/2007 Updated: 15/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple stack-based buffer overflows in the CPLI_ReadTag_OGG function in CPI_PlaylistItem.c in CoolPlayer 217 and previous versions allow user-assisted remote malicious users to execute arbitrary code via a long (1) cTag or (2) cValue field in an OGG Vorbis file.

Vulnerable Product Search on Vulmon Subscribe to Product

coolplayer coolplayer 217

Exploits

source: wwwsecurityfocuscom/bid/27061/info CoolPlayer is prone a buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied data The issue occurs when handling specially crafted OGG files Successfully exploiting this issue allows remote attackers to execute arbitrary code in the co ...