Show filters
67 Total Results
Displaying 21-30 of 67
Sort by:
Attacker Value
Unknown

KMPlayer Heap Overflow Vulnerability

Disclosure Date: December 20, 2018 (last updated November 27, 2024)
KMPlayer 4.2.2.15 and earlier have a Heap Based Buffer Overflow Vulnerability. It could be exploited with a crafted FLV format file. The problem is that more frame data is copied to heap memory than the size specified in the frame header. This results in a memory corruption and remote code execution.
Attacker Value
Unknown

CVE-2017-16952

Disclosure Date: November 28, 2017 (last updated November 26, 2024)
KMPlayer 4.2.2.4 allows remote attackers to cause a denial of service via a crafted NSV file.
0
Attacker Value
Unknown

CVE-2011-3625

Disclosure Date: June 11, 2014 (last updated October 05, 2023)
Stack-based buffer overflow in the sub_read_line_sami function in subreader.c in MPlayer, as used in SMPlayer 0.6.9, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a SAMI subtitle file.
0
Attacker Value
Unknown

CVE-2011-5170

Disclosure Date: September 15, 2012 (last updated October 05, 2023)
Stack-based buffer overflow in Castillo Bueno Systems CCMPlayer 1.5 allows remote attackers to execute arbitrary code via a long track name in an m3u playlist.
0
Attacker Value
Unknown

CVE-2012-3841

Disclosure Date: July 03, 2012 (last updated October 04, 2023)
Untrusted search path vulnerability in KMPlayer 3.2.0.19 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse ehtrace.dll that is located in the current working directory.
0
Attacker Value
Unknown

CVE-2011-2594

Disclosure Date: September 02, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in KMPlayer 3.0.0.1441, and possibly other versions, allows remote attackers to execute arbitrary code via a playlist (.KPL) file with a long Title field.
0
Attacker Value
Unknown

CVE-2010-3908

Disclosure Date: May 20, 2011 (last updated October 04, 2023)
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a malformed WMV file.
0
Attacker Value
Unknown

CVE-2011-2160

Disclosure Date: May 20, 2011 (last updated October 04, 2023)
The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-2011-0723.
0
Attacker Value
Unknown

CVE-2011-2162

Disclosure Date: May 20, 2011 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in FFmpeg 0.4.x through 0.6.x, as used in MPlayer 1.0 and other products, in Mandriva Linux 2009.0, 2010.0, and 2010.1; Corporate Server 4.0 (aka CS4.0); and Mandriva Enterprise Server 5 (aka MES5) have unknown impact and attack vectors, related to issues "originally discovered by Google Chrome developers."
0
Attacker Value
Unknown

CVE-2011-0722

Disclosure Date: May 20, 2011 (last updated October 04, 2023)
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a malformed RealMedia file.
0