CVE-2012-5917

SnackAmp 3.1.3 - Denial of Service via Long String in AIFF File

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2012-5917. PoCs published by Ahmed Elhady Mohamed.

AI-analyzed exploit summary This exploit generates a malicious AIFF file with an oversized buffer to trigger a denial of service in SnackAmp 3.1.3. The PoC writes a 10,000-byte 'A' buffer to a file, which when processed by the target software, causes a crash.

Description

SnackAmp 3.1.3 allows remote attackers to cause a denial of service (application crash) via a long string in an aiff file.

Exploits (1)

exploitdb WORKING POC
by Ahmed Elhady Mohamed · rubydoslinux
https://www.exploit-db.com/exploits/18692

This exploit generates a malicious AIFF file with an oversized buffer to trigger a denial of service in SnackAmp 3.1.3. The PoC writes a 10,000-byte 'A' buffer to a file, which when processed by the target software, causes a crash.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: SnackAmp 3.1.3
No auth needed
Prerequisites: None
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (4)

Core 4
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/18692
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/52842
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/74528
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/80805

Scores

EPSS 0.0251
EPSS Percentile 82.7%

Details

CWE
CWE-119
Status published
Products (1)
tom_wilkason/snackamp 3.1.3
Published Nov 17, 2012
Tracked Since Feb 18, 2026