BlazeDVD is leading powerful and easy-to-use DVD player software. It can provide superior video and audio(Dolby) quality, together with other enhanced features:e.g. recording DVD,playback image and DV,bookmark and image capture.etc. Furthermore, besides DVD,Video CD,Audio CD, BlazeDVD supports DIVX, MPEG4, RM, QuickTime, WMV, WMV-HD, MacroMedia Flash and any other video file you have the codec installed for.The DVD player software can be extensive compatible with hardware,which is operated stable,smoothly under Windows98, 98SE, Me, 2000, XP, VISTA.
BlazeDVD 5.0 suffers from buffer overflow vulnerability that can be exploited via crafted PLF playlist file localy and remotely. It fails to perform boundry checking of the user input file, allowing the EIP to be overwritten, thus, controling the next insctruction of the software. After succesfull exploitation, arbitrary code will be executed. Failed attempts will result in Denial Of Service (DoS).