CVE-2009-3170

Aimp2 Audio Converter < 2.53 - Memory Corruption

Title source: rule

Description

Stack-based buffer overflow in AIMP2 Audio Converter 2.53 (build 330) and earlier allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a long File1 argument in a (1) .pls or (2) .m3u playlist file.

Exploits (3)

exploitdb WORKING POC VERIFIED
by mr_me · pythonlocalwindows
https://www.exploit-db.com/exploits/10280
exploitdb WORKING POC VERIFIED
by corelanc0d3r · perllocalwindows
https://www.exploit-db.com/exploits/9974
exploitdb WORKING POC VERIFIED
by mr_me · pythondoswindows
https://www.exploit-db.com/exploits/9561

Scores

EPSS 0.1201
EPSS Percentile 93.8%

Details

CWE
CWE-119
Status published
Products (1)
aimp/aimp2_audio_converter < 2.53
Published Sep 11, 2009
Tracked Since Feb 18, 2026