CVE-2009-2896: Buffer Overflow
Published Aug 20, 2009
·Updated
Buffer overflow in KMplayer 2.9.4.1433 and earlier allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long string in a subtitle (.srt) playlist file. NOTE: some of these details are obtained from third party information.
Affected Software
2 affected components
KDE Kmplayer<=2.9.4.1433
KDE Kmplayer=2.9.3.1210
Event History
Aug 20, 2009
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-2896?
CVE-2009-2896 is rated as high severity due to its potential to cause denial of service or execute arbitrary code.
2
How do I fix CVE-2009-2896?
To fix CVE-2009-2896, upgrade KMplayer to version 2.9.4.1434 or later.
3
What types of attacks does CVE-2009-2896 enable?
CVE-2009-2896 allows attackers to execute arbitrary code or cause the KMplayer application to crash.
4
Which versions of KMplayer are affected by CVE-2009-2896?
CVE-2009-2896 affects KMplayer versions up to and including 2.9.4.1433.
5
What type of vulnerability is CVE-2009-2896?
CVE-2009-2896 is a buffer overflow vulnerability.