SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2004-1569

Buffer overflow in (1) MusicConverter.exe, (2) playlist.exe, and (3) amp.exe in dBpowerAMP Audio Player 2.0 and dbPowerAmp Music Converter 10.0 allows remote attackers to cause a denial of service or execute arbitrary code via a .pls or .m3u playlist…

MEDIUM 4.0EPSS 4.74%

Does this matter?

Lower severity and a low EPSS score (4.74%). Track it; it rarely justifies an emergency change on its own.

Description

Buffer overflow in (1) MusicConverter.exe, (2) playlist.exe, and (3) amp.exe in dBpowerAMP Audio Player 2.0 and dbPowerAmp Music Converter 10.0 allows remote attackers to cause a denial of service or execute arbitrary code via a .pls or .m3u playlist that contains long File1 (filename) fields.

CVSS 2.0
4.0 MEDIUMAV:N/AC:H/Au:N/C:N/I:P/A:P
EPSS
4.74% probability · 91th percentile
CISA KEV
Not listed
Affected
illustrate/dbpoweramp audio player · illustrate/dbpoweramp music converter
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.