Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Free MP3 CD Ripper 2.8 Buffer Overflow SEH DEP Bypass
Vulnerability Description
Free MP3 CD Ripper 2.8 contains a stack-based buffer overflow vulnerability in WMA file processing that allows local attackers to bypass DEP protection via structured exception handling manipulation. Attackers can craft a malicious WMA file that triggers the overflow when loaded through the Convert function, enabling execution of arbitrary code through ROP chain gadgets and shellcode injection.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
栈缓冲区溢出
Vulnerability Title
Free MP3 CD Ripper 安全漏洞
Vulnerability Description
Free MP3 CD Ripper是一款音频格式转换器。 Free MP3 CD Ripper 2.8版本存在安全漏洞,该漏洞源于WMA文件处理中存在栈缓冲区溢出,可能导致本地攻击者通过结构化异常处理操作绕过DEP保护,执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A