CVE-2004-1569
Buffer overflow in (1) MusicConverter.exe, (2) playlist.exe, and (3) amp.exe in dBpowerAMP Audio Player 2.0 and dbPowerAmp Music Converter 10.0 allows remote attackers to cause a denial of service or execute arbitrary code via a .pls or .m3u playlist…
Does this matter?
Lower severity and a low EPSS score (4.74%). Track it; it rarely justifies an emergency change on its own.
Description
Buffer overflow in (1) MusicConverter.exe, (2) playlist.exe, and (3) amp.exe in dBpowerAMP Audio Player 2.0 and dbPowerAmp Music Converter 10.0 allows remote attackers to cause a denial of service or execute arbitrary code via a .pls or .m3u playlist that contains long File1 (filename) fields.
- CVSS 2.0
- 4.0 MEDIUMAV:N/AC:H/Au:N/C:N/I:P/A:P
- EPSS
- 4.74% probability · 91th percentile
- CISA KEV
- Not listed
- Affected
- illustrate/dbpoweramp audio player · illustrate/dbpoweramp music converter
- Source
- cve@mitre.org
References
- http://marc.info/?l=bugtraq&m=109668542406346&w=2
- http://secunia.com/advisories/12684/Vendor Advisory
- http://www.gulftech.org/?node=research&article_id=00052-09272004Exploit, Vendor Advisory
- http://www.securityfocus.com/bid/11266Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17535
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17539
- http://marc.info/?l=bugtraq&m=109668542406346&w=2
- http://secunia.com/advisories/12684/Vendor Advisory
- http://www.gulftech.org/?node=research&article_id=00052-09272004Exploit, Vendor Advisory
- http://www.securityfocus.com/bid/11266Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17535
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17539
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.