CVE-2007-5709
Sony SonicStage CONNECT Player 4.3 - Stack-based Buffer Overflow via M3U File Name
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-5709. PoCs published by TaMBaRuS.
AI-analyzed exploit summary This exploit targets a stack buffer overflow in Sony CONNECT Player (SonicStage) 4.x via a maliciously crafted M3U playlist file. It leverages SEH overwrite with a POP POP RET gadget from SHELL32.DLL to execute arbitrary shellcode.
Description
Stack-based buffer overflow in Sony SonicStage CONNECT Player (CP) 4.3 allows remote attackers to execute arbitrary code via a long file name in an M3U file.
Exploits (1)
This exploit targets a stack buffer overflow in Sony CONNECT Player (SonicStage) 4.x via a maliciously crafted M3U playlist file. It leverages SEH overwrite with a POP POP RET gadget from SHELL32.DLL to execute arbitrary shellcode.