Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Extended Module Player (XMP) 2.5.1 and earlier allow remote attackers to execute arbitrary code via an OXM file with a negative value, which bypasses a check in (1) test_oxm and (2) decrunch_oxm functions in misc/oxm.c, leading to a buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Claudio_Matsuoka Extended Module Player oxm文件缓冲区溢出漏洞
Vulnerability Description
Extended Module Player (XMP) 2.5.1版本及其早期版本允许远程攻击者可以借助一个具有负值的OXM文件,且该文件绕过(1)test_oxm和(2)misc/oxm.c中的decrunch_oxm函数中的检查,执行任意代码,这会导致一个缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A