9.3
CVSSv2

CVE-2011-0502

Published: 20/01/2011 Updated: 21/01/2011
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Music Animation Machine MIDI Player 2006aug19 Release 035 and possibly other versions allows user-assisted remote malicious users to cause a denial of service (crash) and possibly have other unspecified impact via a long line in a MIDI (.mid) file.

Vulnerable Product Search on Vulmon Subscribe to Product

musanim music animation machine midi player 2006aug19_release_035

Exploits

# Exploit Title: Music Animation Machine MIDI Player Local Crash PoC # Date: 1/3/2011 # Author: c0d3R'Z # Software Link: wwwmusanimcom/player/MAMPlayer2006aug19_035zip # Version: Release 035 # Tested on: Windows XP SP2 EN (VirtualBox) # The application crashes when trys to convert a malformed midi file #!/usr/bin/python buffer ...