packetstormsecurity.com
http://packetstormsecurity.com/files/159898/Amarok-2.8.0-Denial-Of-Service.html CVE-2020-13152
MEDIUM
Amarok 2.8.0 - Denial-of-Service
Record summary
CVE-2020-13152 has a selected CVSS score of 5.5 (medium); EIP currently links 1 catalogued exploit.
Description
A remote user can create a specially crafted M3U file, media playlist file that when loaded by the target user, will trigger a memory leak, whereby Amarok 2.8.0 continue to waste resources over time, eventually allows attackers to cause a denial of service.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBAmarok 2.8.0 - Denial-of-ServiceExploitDB exploitby FishballAndMeatballNot analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-13152 r00texpl0it.wordpress.com
https://r00texpl0it.wordpress.com/2020/05/20/kde-amarok-2-8-0-allows-remote-attackers-to-cause-a-denial-of-service