View Issue Details

IDProjectCategoryView StatusLast Update
0005255MMW v4Otherpublic2009-05-14 00:29
Reporterrusty Assigned To 
PriorityimmediateSeveritymajorReproducibilityhave not tried
Status closedResolutionfixed 
Product Version3.0 
Target Version3.1Fixed in Version3.1 
Summary0005255: m3u handling buffer overflow error
DescriptionThere's been a report of a buffer overflow error in MM 3.0.6 wrt M3U handling:
http://www.securityfocus.com/bid/33420

We need to assess whether a problem exists and if so, decide whether to release 3.0.8 or include in 3.1.
TagsNo tags attached.
Fixed in build1220

Activities

petr

2009-01-28 17:08

developer   ~0016443

Fixed in 1220

jiri

2009-01-28 23:32

administrator   ~0016449

A note about severity of the issue: We made a detailed analysis and although that malicious M3U can cause MediaMonkey to crash, it doesn't seem to be possible to cause execution of some arbitrary code. So, this isn't a high risk issue and we don't need to create 3.0.8 because of it.

peke

2009-05-08 21:39

developer   ~0017756

Tested in 1244 By D&D affected M3U to Now playing and initiate play of AAAAAAAAAAAAAAAAAAA track crash MediaMonkey

petr

2009-05-11 00:28

developer   ~0017790

Tried with latest developer version and working fine. Retest that in next build.

peke

2009-05-14 00:29

developer   ~0017839

Verified 1245