First published: Tue Apr 09 2019(Updated: )
When processing subtitles format media file, KMPlayer version 2018.12.24.14 or lower doesn't check object size correctly, which leads to integer underflow then to memory out-of-bound read/write. An attacker can exploit this issue by enticing an unsuspecting user to open a malicious file.
Credit: vuln@krcert.or.kr vuln@krcert.or.kr
Affected Software | Affected Version | How to fix |
---|---|---|
Kmplayer Kmplayer | <=2018.12.24.14 | |
Microsoft Windows | ||
Fedoraproject Fedora | =29 | |
Fedoraproject Fedora | =30 | |
All of | ||
Kmplayer Kmplayer | <=2018.12.24.14 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.