CVE-2014-3216

GOM Media Player < 2.2.57.5189 - Denial of Service via Crafted OGG File

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2014-3216. PoCs published by Aryan Bayaninejad.

AI-analyzed exploit summary This exploit targets a memory corruption vulnerability in GOM Player 2.2.57.5189 via a malformed OGG file. The PoC generates a crafted OGG file that triggers the vulnerability, potentially leading to arbitrary code execution.

Description

GOM Media Player 2.2.57.5189 and earlier allows remote attackers to cause a denial of service (crash) via a crafted .ogg file.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Aryan Bayaninejad · pythondoswindows
https://www.exploit-db.com/exploits/33335

This exploit targets a memory corruption vulnerability in GOM Player 2.2.57.5189 via a malformed OGG file. The PoC generates a crafted OGG file that triggers the vulnerability, potentially leading to arbitrary code execution.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: GOM Player 2.2.57.5189 and prior
No auth needed
Prerequisites: Victim must open the malformed OGG file in GOM Player
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/33335

Scores

EPSS 0.0233
EPSS Percentile 81.3%

Details

CWE
CWE-20
Status published
Products (1)
gomlab/gom_media_player < 2.2.57.5189
Published Jun 10, 2014
Tracked Since Feb 18, 2026