First published: Tue Mar 24 2009(Updated: )
Stack-based buffer overflow in BS.Player (bsplayer) 2.32 Build 975 Free and 2.34 Build 980 PRO and earlier allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long hostname in a .bsl playlist file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
BSPlayer | =2.32-free | |
BSPlayer | =2.34-pro |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-1068 has a high severity rating due to its potential to cause application crashes and allow arbitrary code execution.
To fix CVE-2009-1068, update BS.Player to the latest version that addresses this vulnerability.
CVE-2009-1068 affects BS.Player versions 2.32 Build 975 Free and 2.34 Build 980 PRO and earlier.
Yes, CVE-2009-1068 can be exploited remotely by sending a specially crafted .bsl playlist file containing a long hostname.
CVE-2009-1068 can lead to denial of service attacks resulting in application crashes and the execution of arbitrary code.