CVE-2009-1449

Coolplayer - Memory Corruption

Title source: rule

Description

Stack-based buffer overflow in PortableApps CoolPlayer Portable (aka CoolPlayer+ Portable) 2.19.1 allows remote attackers to execute arbitrary code via a skin file (skin.ini) with a large PlaylistSkin parameter. NOTE: this may overlap CVE-2008-5735.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Stack · pythonlocalwindows
https://www.exploit-db.com/exploits/8527

Scores

EPSS 0.2316
EPSS Percentile 95.8%

Classification

CWE
CWE-119
Status draft

Affected Products (1)

coolplayer/coolplayer

Timeline

Published Apr 27, 2009
Tracked Since Feb 18, 2026