CVE-2017-8367
Last modified
CVE-2017-8367 is a vulnerability of currently unknown severity. Buffer overflow in Ether Software Easy MOV Converter 1.4.24, Easy DVD Creator, Easy MPEG/AVI/DIVX/WMV/RM to DVD, Easy Avi/Divx/Xvid to DVD Burner, Easy MPEG to DVD Burner, Easy WMV/ASF/ASX to DVD Burner, Easy RM RMVB to DVD Burner, Easy CD DVD Copy, MP3/AVI/MPEG/WMV/RM to Audio CD Burner, MP3/WAV/OGG/WMA/AC3 to CD Burner, MP3 WAV to CD Burner, My Video Converter, Easy AVI DivX Converter, Easy Video to iPod Converter, Easy Video to PSP Converter, Easy Video to 3GP Converter, Easy Video to MP4 Converter, and Easy Video to iPod/MP4/PSP/3GP Converter allows local attackers to cause a denial of service (SEH overwrite) or possibly have unspecified other impact via a long username.. EPSS estimates a 0.50% chance of exploitation in the next 30 days.
Description
Buffer overflow in Ether Software Easy MOV Converter 1.4.24, Easy DVD Creator, Easy MPEG/AVI/DIVX/WMV/RM to DVD, Easy Avi/Divx/Xvid to DVD Burner, Easy MPEG to DVD Burner, Easy WMV/ASF/ASX to DVD Burner, Easy RM RMVB to DVD Burner, Easy CD DVD Copy, MP3/AVI/MPEG/WMV/RM to Audio CD Burner, MP3/WAV/OGG/WMA/AC3 to CD Burner, MP3 WAV to CD Burner, My Video Converter, Easy AVI DivX Converter, Easy Video to iPod Converter, Easy Video to PSP Converter, Easy Video to 3GP Converter, Easy Video to MP4 Converter, and Easy Video to iPod/MP4/PSP/3GP Converter allows local attackers to cause a denial of service (SEH overwrite) or possibly have unspecified other impact via a long username.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ether Software | Easy Avi\/Divx\/Xvid To Dvd Burner | All versions |
| Ether Software | Easy Avi Divx Converter | All versions |
| Ether Software | Easy Cd Dvd Copy | All versions |
| Ether Software | Easy Dvd Creator | All versions |
| Ether Software | Easy Mov Converter | All versions |
| Ether Software | Easy Mov Converter | 1.4.24 |
| Ether Software | Easy Mpeg\/Avi\/Divx\/Wmv\/Rm To Dvd | All versions |
| Ether Software | Easy Mpeg To Dvd Burner | All versions |
| Ether Software | Easy Rm Rmvb To Dvd Burner | All versions |
| Ether Software | Easy Video To 3gp Converter | All versions |
| Ether Software | Easy Video To Ipod\/Mp4\/Psp\/3gp Converter | All versions |
| Ether Software | Easy Video To Ipod Converter | All versions |
| Ether Software | Easy Video To Mp4 Converter | All versions |
| Ether Software | Easy Video To Psp Converter | All versions |
| Ether Software | Easy Wmv\/Asf\/Asx To Dvd Burner | All versions |
| Ether Software | Mp3\/Avi\/Mpeg\/Wmv\/Rm To Audio Cd Burner | All versions |
| Ether Software | Mp3\/Wav\/Ogg\/Wma\/Ac3 To Cd Burner | All versions |
| Ether Software | Mp3 Wav To Cd Burner | All versions |
| Ether Software | My Video Converter | All versions |
References
- https://github.com/offensive-security/exploit-database/blob/master/platforms/windows/dos/41911.pyExploit, Third Party Advisory
- https://www.exploit-db.com/exploits/41911/Third Party Advisory, VDB Entry
- https://github.com/offensive-security/exploit-database/blob/master/platforms/windows/dos/41911.pyExploit, Third Party Advisory
- https://www.exploit-db.com/exploits/41911/Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-8367?
How severe is CVE-2017-8367?
How do I fix CVE-2017-8367?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-8361The flac_buffer_copy function in flac.c in libsndfile 1.0.28…
- CVE-2017-8362The flac_buffer_copy function in flac.c in libsndfile 1.0.28…
- CVE-2017-8363The flac_buffer_copy function in flac.c in libsndfile 1.0.28…
- CVE-2017-8364The read_buf function in stream.c in rzip 2.1 allows remote …
- CVE-2017-8365The i2les_array function in pcm.c in libsndfile 1.0.28 allow…
- CVE-2017-8366The strescape function in ec_strings.c in Ettercap 0.8.2 all…
- CVE-2017-8368Sublime Text 3 Build 3126 allows user-assisted attackers to …
- CVE-2017-8369IrfanView version 4.44 (32bit) has a "Data from Faulting Add…
- CVE-2017-8370IrfanView version 4.44 (32bit) with FPX Plugin 4.45 allows r…
- CVE-2017-8371Schneider Electric StruxureWare Data Center Expert before 7.…
- CVE-2017-8372The mad_layer_III function in layer3.c in Underbit MAD libma…
- CVE-2017-8373The mad_layer_III function in layer3.c in Underbit MAD libma…
Are you affected by CVE-2017-8367?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
