CVE-2013-7409
ALLPlayer <5.8.1 - Buffer Overflow
Title source: llmDescription
Buffer overflow in ALLPlayer 5.6.2 through 5.8.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .m3u (playlist) file.
Exploits (6)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubylocalwindows
https://www.exploit-db.com/exploits/32074
exploitdb
WORKING POC
VERIFIED
by Gabor Seljan · perllocalwindows
https://www.exploit-db.com/exploits/32041
metasploit
WORKING POC
NORMAL
by metacom, Mike Czumak, Gabor Seljan · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/fileformat/allplayer_m3u_bof.rb
References (11)
Scores
EPSS
0.8214
EPSS Percentile
99.2%
Details
CWE
CWE-119
Status
published
Products (3)
allplayer/allplayer
5.6.2
allplayer/allplayer
5.7.0
allplayer/allplayer
< 5.8.1
Published
Oct 30, 2014
Tracked Since
Feb 18, 2026