Description
XMedia Recode 3.4.8.6 contains a denial of service vulnerability that allows attackers to crash the application by loading a specially crafted .m3u playlist file. Attackers can create a malicious .m3u file with an oversized buffer to trigger an application crash when the file is opened.
Problem types
Allocation of Resources Without Limits or Throttling
Product status
Credits
ZwX
References
www.exploit-db.com/exploits/47679 (ExploitDB-47679)
www.xmedia-recode.de/ (Official Vendor Homepage)
www.xmedia-recode.de/download.php (Software Download Page)
www.vulncheck.com/...ries/xmedia-recode-mu-denial-of-service (VulnCheck Advisory: XMedia Recode 3.4.8.6 - '.m3u' Denial Of Service)