CVE-2011-5170

Castillobueno Ccmplayer - Memory Corruption

Title source: rule

Description

Stack-based buffer overflow in Castillo Bueno Systems CCMPlayer 1.5 allows remote attackers to execute arbitrary code via a long track name in an m3u playlist.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubylocalwindows
https://www.exploit-db.com/exploits/18195
exploitdb WORKING POC VERIFIED
by Rh0 · rubylocalwindows
https://www.exploit-db.com/exploits/18178
metasploit WORKING POC GOOD
by Rh0 · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/fileformat/ccmplayer_m3u_bof.rb

Scores

EPSS 0.6559
EPSS Percentile 98.5%

Details

CWE
CWE-119
Status published
Products (1)
castillobueno/ccmplayer 1.5
Published Sep 15, 2012
Tracked Since Feb 18, 2026