10
CVSSv2

CVE-2007-6732

Published: 13/09/2009 Updated: 14/09/2009
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple buffer overflows in the dtt_load function in loaders/dtt_load.c Extended Module Player (XMP) 2.5.1 and previous versions allow remote malicious users to execute arbitrary code via unspecified vectors related to an untrusted length value and the (1) pofs and (2) plen arrays.

Vulnerable Product Search on Vulmon Subscribe to Product

claudio matsuoka extended module player 2.3.1

claudio matsuoka extended module player 2.3.0

claudio matsuoka extended module player 2.2.1

claudio matsuoka extended module player 2.2.0

claudio matsuoka extended module player 2.4.1

claudio matsuoka extended module player 2.3.2

claudio matsuoka extended module player 2.5.0

claudio matsuoka extended module player

claudio matsuoka extended module player 2.4.0

Vendor Advisories

Debian Bug report logs - #546730 CVE-2007-6731, CVE-2007-6732: Multiple buffer overflows Package: xmp; Maintainer for xmp is Stephen Kitt <skitt@debianorg>; Source for xmp is src:xmp (PTS, buildd, popcon) Reported by: Giuseppe Iuculano <giuseppe@iuculanoit> Date: Tue, 15 Sep 2009 11:24:06 UTC Severity: serious Tag ...