A Vulnerability Lab researcher identified the high severity flaw

Mar 12, 2012 08:34 GMT  ·  By

Georgian security expert Ucha Gobejishvili, a member of the Vulnerability Laboratory Research Team, identified a serious buffer overflow vulnerability in the latest version of the popular GOM Player.

The high severity flaw can be locally and remotely exploited by an attacker who opens, or convinces the victim to open a specially crafted URL.

The proof of concept video made by the researcher clearly shows that once a certain string is opened in the 2.1.37 variant of GOM, the application crashes almost immediately.

Buffer overflow errors occur when a larger quantity of data than the one intended is stored in a buffer.

These types of attacks can pose a great danger on data integrity, because the “extra data” can contain malicious codes developed to initiate certain actions that could ultimately lead to information disclosure or the destruction of data.