Lucene search

K
cveMitreCVE-2009-3969
HistoryNov 18, 2009 - 11:30 p.m.

CVE-2009-3969

2009-11-1823:30:00
CWE-119
mitre
web.nvd.nist.gov
27
cve-2009-3969
faslo player 7.0
buffer overflow
denial of service
remote attackers
arbitrary code
.m3u playlist
nvd

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8.3

Confidence

High

EPSS

0.05

Percentile

92.9%

Stack-based buffer overflow in Faslo Player 7.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .m3u playlist file.

Affected configurations

Nvd
Node
faslofaslo_playerMatch7.0
VendorProductVersionCPE
faslofaslo_player7.0cpe:2.3:a:faslo:faslo_player:7.0:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8.3

Confidence

High

EPSS

0.05

Percentile

92.9%

Related for CVE-2009-3969