Vuplayer is a media player product with a compact vulnerability footprint characterized by memory-safety issues, including buffer overflows and improper bounds checking in buffer operations. These weakness classes reflect the low-level memory handling typical of multimedia codec and playback implementations. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Vuplayer over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-6251HIGH Stack-based buffer overflow in VUPlayer 2.44 and earlier allows remote attackers to execute arbitrary code via a long string in an M3U file, aka an "M3U UNC Name" attack. | Dec 4, 2006 | 7.5 | 73 | NO | YES |
CVE-2009-0182HIGH Buffer overflow in VUPlayer 2.49 and earlier allows user-assisted attackers to execute arbitrary code via a long URL in a File line in a .pls file, as demonstrated by an http URL o | Jan 20, 2009 | 8.8 | 70 | NO | YES |
CVE-2009-0174HIGH Stack-based buffer overflow in VUPlayer 2.49 allows remote attackers to execute arbitrary code via a long .asf URI in the HREF attribute of a REF element in a .asx file. | Jan 20, 2009 | 9.3 | 38 | NO | YES |
CVE-2009-0181HIGH Buffer overflow in VUPlayer allows user-assisted attackers to have an unknown impact via a long file, as demonstrated by a file composed entirely of 'A' characters. | Jan 20, 2009 | 9.3 | 23 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Vuplayer.
Media articles that mention a CVE ID that affects a product developed by Vuplayer — matched by CVE ID, not by vendor name.