HIGH · 7.8

CVE-2006-6250

Format string vulnerability in Songbird Media Player 0.2 and earlier allows remote attackers to cause a denial of service (crash) via an M3U Playlist file containing extended ASCII, which causes the U...

Vulnerability Description

Format string vulnerability in Songbird Media Player 0.2 and earlier allows remote attackers to cause a denial of service (crash) via an M3U Playlist file containing extended ASCII, which causes the Unicode converter to be invoked.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
SongbirdSongbird Media Player<= 0.2

References

FAQ

What is CVE-2006-6250?

CVE-2006-6250 is a vulnerability with a CVSS score of 7.8 (HIGH). Format string vulnerability in Songbird Media Player 0.2 and earlier allows remote attackers to cause a denial of service (crash) via an M3U Playlist file containing extended ASCII, which causes the U...

How severe is CVE-2006-6250?

CVE-2006-6250 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-6250?

Check the references section above for vendor advisories and patch information. Affected products include: Songbird Songbird Media Player.