Official Product Homepageproduct
http://www.alloksoft.com/ CVE-2018-25322
HIGH
Allok Fast AVI MPEG Splitter 1.2 Stack Based Buffer Overflow
Record summary
CVE-2018-25322 has a selected CVSS score of 8.6 (high); EIP currently links 1 catalogued exploit.
Description
Allok Fast AVI MPEG Splitter 1.2 contains a stack based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a malicious license name string. Attackers can craft a payload with 780 bytes of junk data followed by structured shellcode and place it in the License Name field to trigger the overflow and execute code with application privileges.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
CISA SSVC decision
ExploitationPoC
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated May 18, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Fast AVI MPEG SplitterBrowse alloksoft / Fast AVI MPEG Splitter | CVE List | 1.2 | affected |
Proofs of concept
1Catalogued exploits
ExploitDBFast AVI MPEG Splitter 1.2 - Stack-Based Buffer OverflowExploitDB exploitby Mohan Ravichandran and Velayutham SelvarajNot analyzed1 file
References
5Product Referenceproduct
http://www.alloksoft.com/allok_vconverter.exe nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-25322 ExploitDB-44341exploit
https://www.exploit-db.com/exploits/44341 VulnCheck Advisory: Allok Fast AVI MPEG Splitter 1.2 Stack Based Buffer OverflowThird-party advisory
https://www.vulncheck.com/advisories/allok-fast-avi-mpeg-splitter-stack-based-buffer-overflow