Vulnerabilities > CVE-2009-3201 - Numeric Errors vulnerability in ROB Schultz Media Player Classic 6.4.9

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
rob-schultz
CWE-189
exploit available

Summary

Integer overflow in Media Player Classic 6.4.9 allows user-assisted remote attackers to cause a denial of service (application crash) via a MIDI file (.mid) with a malformed header, which triggers a buffer overflow, a different vulnerability than CVE-2007-4940.

Vulnerable Configurations

Part Description Count
Application
Rob_Schultz
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionMedia Player Classic 6.4.9 (.mid) Integer Overflow PoC. CVE-2009-3201. Dos exploit for windows platform
fileexploits/windows/dos/9620.pl
idEDB-ID:9620
last seen2016-02-01
modified2009-09-09
platformwindows
port
published2009-09-09
reporterPLATEN
sourcehttps://www.exploit-db.com/download/9620/
titleMedia Player Classic 6.4.9 - .mid Integer Overflow PoC
typedos