CVE-2009-1324

Mini-stream ASX to MP3 Converter 3.0.0.7 - Stack-based Buffer Overflow via Long URI in Playlist File

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 8 public exploits for CVE-2009-1324. PoCs published by Amir Tavakolian, Cyber-Zone, Stack.

AI-analyzed exploit summary This exploit targets a stack buffer overflow in ASX to MP3 Converter 2.7.5 by crafting a malicious .m3u file with a large payload, including shellcode for remote code execution. The exploit leverages a known return address (0x73e848a7) to redirect execution flow.

Description

Stack-based buffer overflow in Mini-stream ASX to MP3 Converter 3.0.0.7 allows remote attackers to execute arbitrary code via a long URI in a playlist (.m3u) file.

Exploits (8)

exploitdb WORKING POC VERIFIED
by Amir Tavakolian · perllocalwindows
https://www.exploit-db.com/exploits/34921

This exploit targets a stack buffer overflow in ASX to MP3 Converter 2.7.5 by crafting a malicious .m3u file with a large payload, including shellcode for remote code execution. The exploit leverages a known return address (0x73e848a7) to redirect execution flow.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: ASX to MP3 Converter 2.7.5
No auth needed
Prerequisites: Victim must open the malicious .m3u file with the vulnerable software
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by Cyber-Zone · perldoswindows
https://www.exploit-db.com/exploits/8407

This Perl script generates a malicious .M3U file that triggers a local stack overflow in ASX to MP3 Converter when processed. The exploit uses a long HTTP URL string (26121 'A' characters) to overwrite the stack, leading to arbitrary code execution (EIP control).

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: ASX to MP3 Converter (version unspecified)
No auth needed
Prerequisites: Victim must open the crafted .M3U file with the vulnerable ASX to MP3 Converter software
devstral-2 · analyzed Feb 18, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by Stack · perllocalwindows
https://www.exploit-db.com/exploits/8412

This exploit targets a stack overflow vulnerability in ASX to MP3 Converter Version 3.0.0.7 via a maliciously crafted .m3u file. It uses a long HTTP URL followed by a return address and shellcode to achieve remote code execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: ASX to MP3 Converter Version 3.0.0.7
No auth needed
Prerequisites: Victim must open the maliciously crafted .m3u file
devstral-2 · analyzed Feb 16, 2026 Full analysis →
nomisec WORKING POC
by war4uthor · poc
https://github.com/war4uthor/CVE-2009-1324

This repository contains a functional exploit for CVE-2009-1324, a buffer overflow vulnerability in ASX to MP3 Converter. The Python script generates a malicious .m3u file with a crafted payload to trigger the overflow and execute arbitrary code via a JMP ESP instruction from MFC42.dll.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: ASX to MP3 Converter
No auth needed
Prerequisites: Victim must open the malicious .m3u file with the vulnerable ASX to MP3 Converter software
devstral-2 · analyzed Feb 18, 2026 Full analysis →
exploitdb WORKING POC
perldoswindows
https://www.exploit-db.com/exploits/8403

This Perl script generates a malicious .M3U file that triggers a local stack overflow in WM Downloader when parsed, leading to arbitrary code execution. The exploit leverages a buffer overflow vulnerability by crafting an overly long HTTP URL in the M3U file.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: WM Downloader (version unspecified)
No auth needed
Prerequisites: Victim must open the malicious .M3U file in WM Downloader
devstral-2 · analyzed Feb 19, 2026 Full analysis →
exploitdb WORKING POC
perldoswindows
https://www.exploit-db.com/exploits/8404

This Perl script generates a malicious .M3U file that triggers a local stack overflow in RM Downloader when parsed. The exploit uses a long HTTP URL (26109 'A' characters) to overwrite the EIP register, demonstrating a classic buffer overflow vulnerability.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: RM Downloader (version unspecified)
No auth needed
Prerequisites: Victim must open the crafted .M3U file with RM Downloader
devstral-2 · analyzed Feb 19, 2026 Full analysis →
exploitdb WORKING POC
perldoswindows
https://www.exploit-db.com/exploits/8405

This Perl script generates a malicious .M3U file that triggers a local stack overflow in Mini-stream RM-MP3 Converter when parsed. The exploit uses a long HTTP URL string (26121 'A' characters) to overwrite the EIP register, demonstrating a classic buffer overflow vulnerability.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Mini-stream RM-MP3 Converter
No auth needed
Prerequisites: Victim must open the malicious .M3U file with the vulnerable software
devstral-2 · analyzed Feb 19, 2026 Full analysis →
exploitdb WORKING POC
perldoswindows
https://www.exploit-db.com/exploits/8402

This Perl script generates a malicious .M3U file that triggers a local stack overflow in Mini-stream Ripper when parsed. The exploit uses a long HTTP URL (26129 'A' characters) to overwrite the EIP register, demonstrating a classic buffer overflow vulnerability.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Mini-stream Ripper (version unspecified)
No auth needed
Prerequisites: Victim must open the malicious .M3U file in Mini-stream Ripper
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (5)

Core 5
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/34681
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/49840
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/8412
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/8407
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/34494

Scores

EPSS 0.0949
EPSS Percentile 93.0%

Details

CWE
CWE-119
Status published
Products (1)
mini-stream/asx_to_mp3_converter 3.0.0.7
Published Apr 17, 2009
Tracked Since Feb 18, 2026