CVE-2009-1667 describes a stack-based buffer overflow vulnerability in Mini-stream CastRipper 2.50.70. This flaw allows remote attackers to execute arbitrary code by supplying a specially crafted, long entry within a .m3u playlist file. With a CVSS score of 9.3 (Critical), this vulnerability has a high severity, indicating that it can be exploited remotely with medium complexity, leading to complete compromise of confidentiality, integrity, and availability. While not listed on the KEV catalog or currently active on the Hot List, multiple public exploit proofs-of-concept exist on ExploitDB, demonstrating its exploitability, though it has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.50.70CPE matchmatch criteria | cpe:2.3:a:mini-stream:castripper:2.50.70:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.