Multiple buffer overflows in the dtt_load function in loaders/dtt_load.c Extended Module Player (XMP) 2.5.1 and previous versions allow remote malicious users to execute arbitrary code via unspecified vectors related to an untrusted length value and the (1) pofs and (2) plen arrays.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
claudio matsuoka extended module player 2.3.1 |
||
claudio matsuoka extended module player 2.3.0 |
||
claudio matsuoka extended module player 2.2.1 |
||
claudio matsuoka extended module player 2.2.0 |
||
claudio matsuoka extended module player 2.4.1 |
||
claudio matsuoka extended module player 2.3.2 |
||
claudio matsuoka extended module player 2.5.0 |
||
claudio matsuoka extended module player |
||
claudio matsuoka extended module player 2.4.0 |