CVE-2017-8870

HIGH

Mediacoderhq Audiocoder - Memory Corruption

Title source: rule
STIX 2.1

Description

Buffer overflow in AudioCoder 0.8.46 allows remote attackers to execute arbitrary code via a crafted .m3u file.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Muhann4d · pythonlocalwindows
https://www.exploit-db.com/exploits/42385
metasploit WORKING POC NORMAL
by metacom, juan vazquez · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/fileformat/audio_coder_m3u.rb

Scores

CVSS v3 7.8
EPSS 0.3761
EPSS Percentile 97.2%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-119
Status published
Products (1)
mediacoderhq/audiocoder 0.8.46
Published Jul 27, 2017
Tracked Since Feb 18, 2026