Description
When processing subtitles format media file, KMPlayer version 2018.12.24.14 or lower doesn't check object size correctly, which leads to integer underflow then to memory out-of-bound read/write. An attacker can exploit this issue by enticing an unsuspecting user to open a malicious file.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-18517 | When processing subtitles format media file, KMPlayer version 2018.12.24.14 or lower doesn't check object size correctly, which leads to integer underflow then to memory out-of-bound read/write. An attacker can exploit this issue by enticing an unsuspecting user to open a malicious file. |
References
History
No history.
Status: PUBLISHED
Assigner: krcert
Published:
Updated: 2024-08-04T21:38:46.358Z
Reserved: 2019-02-25T00:00:00.000Z
Link: CVE-2019-9133
No data.
Status : Modified
Published: 2019-04-09T18:29:01.017
Modified: 2024-11-21T04:51:02.850
Link: CVE-2019-9133
No data.
OpenCVE Enrichment
No data.
EUVD