9.3
CVSSv2

CVE-2009-1497

Published: 01/05/2009 Updated: 10/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in srt2smi.exe in Gretech Online Movie Player (GOM Player) 2.1.16.4635 allows remote malicious users to cause a denial of service (crash) or execute arbitrary code via a long string in an SRT file.

Vulnerable Product Search on Vulmon Subscribe to Product

gomlab gom player 2.1.16

Exploits

#!/usr/local/bin/perl ################################################################## # # Title : GOM Player Subtitle Buffer Overflow Vulnerabiltity # Discovery by : Bui Quang Minh # Tested : GOM Player 21166134 # Reference : Bkis [securitybkisvn/?p=501] # PoC : Windows XP (Silently Crash) and Windows Vista, Windows 7 # ########## ...