CVE-2009-2403
SCMPX 1.5.1 - Heap-Based Buffer Overflow via Long String in M3U Playlist File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-2403. PoCs published by hack4love.
AI-analyzed exploit summary This exploit demonstrates a local heap overflow in SCMPX 1.5.1 by creating a malformed .m3u file with an excessive number of 'A' characters (5000 bytes). The overflow allows control over the ECX and EDX registers, potentially leading to arbitrary code execution.
Description
Heap-based buffer overflow in SCMPX 1.5.1 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long string in a .m3u playlist file.
Exploits (1)
This exploit demonstrates a local heap overflow in SCMPX 1.5.1 by creating a malformed .m3u file with an excessive number of 'A' characters (5000 bytes). The overflow allows control over the ECX and EDX registers, potentially leading to arbitrary code execution.