← Advisories

BlazeVideo BlazeDVD 5.0 PLF Playlist File Remote Buffer Overflow Exploit

Medium
Advisory ID
ZSL-2008-4892
Release Date
10 August 2008
Vendor
BlazeVideo, Inc. - http://www.blazevideo.com
Affected Version
5.0 (Standard and Professional)
CVE
N/A
Tested On
Microsoft Windows XP Professional SP2 (English)
Summary

BlazeDVD is leading powerful and easy-to-use DVD player software. It can provide superior video and audio(Dolby) quality, together with other enhanced features:e.g. recording DVD,playback image and DV,bookmark and image capture.etc. Furthermore, besides DVD,Video CD,Audio CD, BlazeDVD supports DIVX, MPEG4, RM, QuickTime, WMV, WMV-HD, MacroMedia Flash and any other video file you have the codec installed for.The DVD player software can be extensive compatible with hardware,which is operated stable,smoothly under Windows98, 98SE, Me, 2000, XP, VISTA.

Description

BlazeDVD 5.0 suffers from buffer overflow vulnerability that can be exploited via crafted PLF playlist file localy and remotely. It fails to perform boundry checking of the user input file, allowing the EIP to be overwritten, thus, controling the next insctruction of the software. After succesfull exploitation, arbitrary code will be executed. Failed attempts will result in Denial Of Service (DoS).

Proof of Concept
Disclosure Timeline
N/A
Credits
Vulnerability discovered by Parvez Anwar and Greg Linares
Exploit coded by Gjoko Krstic
References
Changelog
10.08.2008Initial release
27.07.2010Added reference [6]
20.02.2013Added reference [7] and [8]