RJV Media iRehearse '.m3u' File Remote Heap Buffer Overflow Vulnerability
BID:42563
Info
RJV Media iRehearse '.m3u' File Remote Heap Buffer Overflow Vulnerability
| Bugtraq ID: | 42563 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2009-4553 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 07 2009 12:00AM |
| Updated: | Aug 07 2009 12:00AM |
| Credit: | opt!x hacker |
| Vulnerable: |
RJV Media iRehearse 0 |
| Not Vulnerable: | |
Discussion
RJV Media iRehearse '.m3u' File Remote Heap Buffer Overflow Vulnerability
RJV Media iRehearse is prone to a heap-based buffer-overflow issue because it fails to perform adequate boundary checks on user-supplied data.
Successfully exploiting this issue may allow remote attackers to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.
RJV Media iRehearse is prone to a heap-based buffer-overflow issue because it fails to perform adequate boundary checks on user-supplied data.
Successfully exploiting this issue may allow remote attackers to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.
Exploit / POC
RJV Media iRehearse '.m3u' File Remote Heap Buffer Overflow Vulnerability
An attacker must entice an unsuspecting victim into opening a malicious file.
The following proof-of-concept is available:
An attacker must entice an unsuspecting victim into opening a malicious file.
The following proof-of-concept is available:
References
RJV Media iRehearse '.m3u' File Remote Heap Buffer Overflow Vulnerability
References:
References:
- iRehearse Homepage (RJV Media)