CVE detail
CVE-2007-6609 — CVE-2007-6609
Published 2007-12-31 · Modified 2026-06-16 · Vendor coolplayer · Product coolplayer · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0522
EPSS probability
exploitation probability, 30d
92.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Multiple stack-based buffer overflows in the CPLI_ReadTag_OGG function in CPI_PlaylistItem.c in CoolPlayer 217 and earlier allow user-assisted remote attackers to execute arbitrary code via a long (1) cTag or (2) cValue field in an OGG Vorbis file.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References