9.3
CVSSv2

CVE-2011-0498

Published: 20/01/2011 Updated: 24/01/2011
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in Nokia Multimedia Player 1.00.55.5010, and possibly other versions, allows user-assisted remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a long entry in a playlist (.npl) file.

Vulnerable Product Search on Vulmon Subscribe to Product

nokia multimedia player 1.00.55.5010

Exploits

# Exploit Title: Nokia Multimedia player SEH Unicode # Date: January 11 2011 # Author: Carlos Mario Penagos Hollmann # Software Link: wwwbrothersoftcom/nokia-multimedia-player-download-46238html # Version: 100555010 # Tested on: Windows xp sp3 running on VMware Fusion 31 and VirtualBox 328 # mail----> shogilord^gmailcom spa ...