CVE-2010-2004: Buffer Overflow
Stack-based buffer overflow in BS.Global BS.Player 2.51 Build 1022 Free, and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via the Skin parameter in the Options section of a skins file (.bsi), a different vulnerability than CVE-2009-1068.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2004?
CVE-2010-2004 is considered a critical vulnerability due to its potential to allow arbitrary code execution.
How do I fix CVE-2010-2004?
To fix CVE-2010-2004, users should update BS.Player to a version that is not affected by this vulnerability.
What causes CVE-2010-2004?
CVE-2010-2004 is caused by a stack-based buffer overflow that occurs when processing the Skin parameter in skins files.
What types of attacks are possible exploiting CVE-2010-2004?
Exploiting CVE-2010-2004 could allow remote attackers to execute arbitrary code on the affected system.
Is CVE-2010-2004 only affecting BS.Player 2.51?
While CVE-2010-2004 is confirmed to affect BS.Player 2.51, other versions may also be vulnerable.