Free MP3 CD Ripper 2.8 contains a stack buffer overflow vulnerability that allows remote attackers to execute arbitrary code by crafting a malicious WAV file with oversized payload. Attackers can leverage a specially crafted exploit file with shellcode, SEH bypass, and egghunter technique to achieve remote code execution on vulnerable Windows systems.
Metrics
Affected Vendors & Products
References
History
Thu, 29 Jan 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Free MP3 CD Ripper 2.8 contains a stack buffer overflow vulnerability that allows remote attackers to execute arbitrary code by crafting a malicious WAV file with oversized payload. Attackers can leverage a specially crafted exploit file with shellcode, SEH bypass, and egghunter technique to achieve remote code execution on vulnerable Windows systems. | |
| Title | Free MP3 CD Ripper 2.8 - Stack Buffer Overflow (SEH + Egghunter) | |
| Weaknesses | CWE-121 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-29T16:17:15.378Z
Reserved: 2026-01-27T15:47:08.000Z
Link: CVE-2020-37000
No data.
Status : Awaiting Analysis
Published: 2026-01-29T15:16:06.517
Modified: 2026-01-29T16:31:00.867
Link: CVE-2020-37000
No data.
OpenCVE Enrichment
No data.