GOM.Player.OpenUrl.ActiveX.Control.Buffer.Overflow

description-logoDescription

GOM Player (Gretech Online Movie Player) is South Korea's most popular media player. The GomWeb3.dll file is vulnerable to a remote buffer overflow through the GomWeb ActiveX Control's "OpenURL" method.

affected-products-logoAffected Products

GOM Player version 2.1.6.3499 and prior.

Impact logoImpact

System compromise: remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

No update is available, set the kill bit for CLSID {DC07C721-79E0-4BD4-A89F-C90871946A31}.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-10-22 16.948 Name:Gom.
Player.
OpenUrl.
ActiveX.
Control.
Buffer.
Overflow:GOM.
Player.
OpenUrl.
ActiveX.
Control.
Buffer.
Overflow