CVE-2009-3213

broid 1.0 Beta 3a - Stack-Based Buffer Overflow via MP3 File Processing

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2009-3213. PoCs published by hack4love.

AI-analyzed exploit summary This exploit is a local stack overflow PoC for broid 1.0 Beta 3a, which crashes the application by writing a large buffer of 'A' characters to an .mp3 file. The crash is triggered when the file is processed by the vulnerable software.

Description

Stack-based buffer overflow in broid 1.0 Beta 3a allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .mp3 file.

Exploits (1)

exploitdb WORKING POC VERIFIED
by hack4love · perldoswindows
https://www.exploit-db.com/exploits/9457

This exploit is a local stack overflow PoC for broid 1.0 Beta 3a, which crashes the application by writing a large buffer of 'A' characters to an .mp3 file. The crash is triggered when the file is processed by the vulnerable software.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: broid 1.0 Beta 3a
No auth needed
Prerequisites: Vulnerable version of broid installed · Ability to write a malicious .mp3 file to the target system
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/52532

Scores

EPSS 0.0487
EPSS Percentile 90.9%

Details

CWE
CWE-119
Status published
Products (1)
broid/broid 1.0 beta_3a
Published Sep 16, 2009
Tracked Since Feb 18, 2026