Project Subscriptions
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2010-5300 | Xion Audio Player versions prior to 1.0.126 are vulnerable to a Unicode-based stack buffer overflow triggered by opening a specially crafted .m3u playlist file. The file contains an overly long string that overwrites the Structured Exception Handler (SEH) chain, allowing an attacker to hijack execution flow and run arbitrary code. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 05 Mar 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | ||
| Vendors & Products |
Sonaar
Sonaar mp3 Audio Player For Music\, Radio \& Podcast |
Thu, 05 Mar 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sonaar
Sonaar mp3 Audio Player For Music\, Radio \& Podcast |
|
| CPEs | cpe:2.3:a:sonaar:mp3_audio_player_for_music\,_radio_\&_podcast:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Sonaar
Sonaar mp3 Audio Player For Music\, Radio \& Podcast |
Wed, 20 Aug 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 20 Aug 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Xion Audio Player versions prior to 1.0.126 are vulnerable to a Unicode-based stack buffer overflow triggered by opening a specially crafted .m3u playlist file. The file contains an overly long string that overwrites the Structured Exception Handler (SEH) chain, allowing an attacker to hijack execution flow and run arbitrary code. | |
| Title | Xion Audio Player ≤ 1.0.126 Unicode Stack Buffer Overflow | |
| Weaknesses | CWE-121 | |
| References |
|
|
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-05T12:33:26.381Z
Reserved: 2025-08-19T16:00:37.407Z
Link: CVE-2010-20042
Updated: 2025-08-20T18:15:58.336Z
Status : Awaiting Analysis
Published: 2025-08-20T16:15:33.413
Modified: 2025-08-22T18:09:17.710
Link: CVE-2010-20042
No data.
OpenCVE Enrichment
No data.
EUVD