CVE-2014-3736

ALLPlayer - '.wav' File Processing Memory Corruption

STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2014-3736. PoCs published by Aryan Bayaninejad.

AI-analyzed exploit summary This exploit targets a memory corruption vulnerability in ALLPlayer 5.9 by providing a malformed WAV file. The PoC contains a long sequence of 'A' characters likely intended to trigger a buffer overflow, potentially leading to a denial-of-service or arbitrary code execution.

Description

ALLPlayer - '.wav' File Processing Memory Corruption

Exploits (1)

exploitdb WORKING POC VERIFIED
by Aryan Bayaninejad · pythondoswindows
https://www.exploit-db.com/exploits/39183

This exploit targets a memory corruption vulnerability in ALLPlayer 5.9 by providing a malformed WAV file. The PoC contains a long sequence of 'A' characters likely intended to trigger a buffer overflow, potentially leading to a denial-of-service or arbitrary code execution.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Theoretical
Target: ALLPlayer 5.9
No auth needed
Prerequisites: Victim must open the malformed WAV file in ALLPlayer
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status draft
Tracked Since Feb 18, 2026