Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-4656

Опубликовано: 03 мар. 2010
Источник: nvd
CVSS2: 9.3
EPSS Средний

Описание

Stack-based buffer overflow in E-Soft DJ Studio Pro 4.2 including 4.2.2.7.5, and 5.x including 5.1.4.3.1, allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a playlist file (.pls) containing a long string. NOTE: some of these details are obtained from third party information.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:e-soft.co:dj_studio_pro:4.2:*:*:*:*:*:*:*
cpe:2.3:a:e-soft.co:dj_studio_pro:4.2.2.7.5:*:*:*:*:*:*:*
cpe:2.3:a:e-soft.co:dj_studio_pro:5.1:*:*:*:*:*:*:*
cpe:2.3:a:e-soft.co:dj_studio_pro:5.1.4.3.1:*:*:*:*:*:*:*

EPSS

Процентиль: 99%
0.68422
Средний

9.3 Critical

CVSS2

Дефекты

CWE-119

Связанные уязвимости

github
почти 4 года назад

Stack-based buffer overflow in E-Soft DJ Studio Pro 4.2 including 4.2.2.7.5, and 5.x including 5.1.4.3.1, allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a playlist file (.pls) containing a long string. NOTE: some of these details are obtained from third party information.

EPSS

Процентиль: 99%
0.68422
Средний

9.3 Critical

CVSS2

Дефекты

CWE-119