Description

Steinberg MyMP3Player version 3.0 (build 3.0.0.67) is vulnerable to a stack-based buffer overflow when parsing .m3u playlist files. The application fails to properly validate the length of input data within the playlist, allowing a specially crafted file to overwrite critical memory structures and execute arbitrary code. This vulnerability can be exploited locally by convincing a user to open a malicious .m3u file.

INFO

Published Date :

2025-08-21T20:14:21.267Z

Last Modified :

2025-08-22T15:13:59.364Z

Source :

VulnCheck
AFFECTED PRODUCTS

The following products are affected by CVE-2010-20123 vulnerability.

Vendors Products
Steinberg
  • Mymp3pro

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability