MidnightBSD

Advisories for inmatrix

CVE-2007-6533 HIGH

Buffer overflow in Zoom Player 6.00 beta 2 and earlier allows user-assisted remote attackers to execute arbitrary code via an HTTP link to a PLS file in a crafted ZPL file, which causes an overflow in Unicode handling when generating an error message.

CVSS 2.0

Severity: HIGH

Problem Type: CWE-119,

Products Affected

Vendor Product Version
inmatrix zoom_player 5
inmatrix zoom_player 6.00beta2
CVE-2013-3259 MEDIUM

Stack-based buffer overflow in INMATRIX Zoom Player before 8.7 beta 11 allows remote attackers to execute arbitrary code via a large biClrUsed value in a BMP file.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-119,

Products Affected

Vendor Product Version
inmatrix zoom_player 8.1.1
inmatrix zoom_player 8.6
inmatrix zoom_player 8.00
inmatrix zoom_player 8.10
inmatrix zoom_player 8.5
inmatrix zoom_player 8.1.5
inmatrix zoom_player *
inmatrix zoom_player 8.1.6
CVE-2013-3260 MEDIUM

Heap-based buffer overflow in INMATRIX Zoom Player before 8.7 beta 11 allows remote attackers to execute arbitrary code via a large biClrUsed value in a BMP file.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-119,

Products Affected

Vendor Product Version
inmatrix zoom_player 8.1.1
inmatrix zoom_player 8.6
inmatrix zoom_player 8.00
inmatrix zoom_player 8.10
inmatrix zoom_player 8.5
inmatrix zoom_player 8.1.5
inmatrix zoom_player *
inmatrix zoom_player 8.1.6