46924Third-party advisory
http://secunia.com/advisories/46924 CVE-2011-5006
QQPLAYER Player 3.2 - PICT PnSize Buffer Overflow Windows (ASLR + DEP Bypass) (Metasploit)
Record summary
CVE-2011-5006 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.
Description
Stack-based buffer overflow in QQPlayer 3.2.845 allows remote attackers to execute arbitrary code via a crafted PnSize value in a MOV file.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBQQPLAYER Player 3.2 - PICT PnSize Buffer Overflow Windows (ASLR + DEP Bypass) (Metasploit)ExploitDB exploitby hellokNot analyzed1 file
References
518137exploit
http://www.exploit-db.com/exploits/18137 77266vdb entry
http://www.osvdb.org/77266 50739vdb entry
http://www.securityfocus.com/bid/50739 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2011-5006