Welcome, Guest. Please Login.
05/18/13 at 15:13:52
News:


CoolPlayer Vulnerabilities (Read 2128 times)
eddie5659
MDH Moderator
*****




Posts: 586
CoolPlayer Vulnerabilities
12/03/06 at 12:49:59
 
Hiya
 
CoolPlayer is vulnerable to multiple unspecified buffer overflows. A remote attacker could exploit these vulnerabilities using unspecified attack vectors to execute arbitrary commands or cause the application to crash.
 
Platforms Affected:
 
Microsoft Corporation: Windows 95  
Microsoft Corporation: Windows 98  
Microsoft Corporation: Windows 98 Second Edition  
Microsoft Corporation: Windows Me  
Microsoft Corporation: Windows XP  
Microsoft Corporation: Windows 2000 Any version  
Microsoft Corporation: Windows 2003 Any version  
Microsoft Corporation: Windows NT 4.0  
Open Source Technology Group: CoolPlayer 215 and prior  

 
http://xforce.iss.net/xforce/xfdb/30658
 
Regards
 
eddie
Back to top
 
 

Just go with the flow, like a twig on the shoulders of a mighty stream

  IP Logged
eddie5659
MDH Moderator
*****




Posts: 586
CoolPlayer main_skin_open() function buffer overfl
Reply #1 - 12/13/06 at 16:38:05
 
Hiya
 
CoolPlayer is vulnerable to a buffer overflow, caused by improper bounds checking by main_skin_open() function. By creating a specially-crafted skin file containing an overly long bitmap filename and persuading a victim to open the file, a remote attacker could overflow a buffer and execute arbitrary code on the system or cause the application to crash.
 
Platforms Affected:
 
Microsoft Corporation: Windows 95  
Microsoft Corporation: Windows 98  
Microsoft Corporation: Windows 98 Second Edition  
Microsoft Corporation: Windows Me  
Microsoft Corporation: Windows XP  
Microsoft Corporation: Windows 2000 Any version  
Microsoft Corporation: Windows 2003 Any version  
Microsoft Corporation: Windows NT 4.0  
Open Source Technology Group: CoolPlayer 215 and prior

 
http://xforce.iss.net/xforce/xfdb/30863
 
Back to top
 
 

Just go with the flow, like a twig on the shoulders of a mighty stream

  IP Logged
eddie5659
MDH Moderator
*****




Posts: 586
CoolPlayer main_skin_check_ini_value() buffer over
Reply #2 - 12/13/06 at 16:39:13
 

CoolPlayer is vulnerable to a buffer overflow, caused by improper bounds checking by main_skin_check_ini_value() function. By creating a specially-crafted skin file containing overly long button names and persuading a victim to open the file, a remote attacker could overflow a buffer and execute arbitrary code on the system or cause the application to crash.
 
Platforms Affected:
 
Microsoft Corporation: Windows 95  
Microsoft Corporation: Windows 98  
Microsoft Corporation: Windows 98 Second Edition  
Microsoft Corporation: Windows Me  
Microsoft Corporation: Windows XP  
Microsoft Corporation: Windows 2000 Any version  
Microsoft Corporation: Windows 2003 Any version  
Microsoft Corporation: Windows NT 4.0  
Open Source Technology Group: CoolPlayer 215 and prior  

 
http://xforce.iss.net/xforce/xfdb/30861
Back to top
 
 

Just go with the flow, like a twig on the shoulders of a mighty stream

  IP Logged