kmplayer CVE Vulnerabilities & CVE List (5)

Products (CPE): — CVEs: 5

kmplayer vulnerability overview

Aggregates CVE and security vulnerability intelligence across all kmplayer-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk buffer overflow and vendor risk memory corruption and related problems; some flaws may lead to vendor impact application crash, affecting vendor surface software deployment scenarios.

Vulnerability distribution trend (last 24 months)

Showing 15 of 5 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2019-17259 KMPlayer 4.2.2.31 allows a User Mode Write AV starting at utils!src_new+0x000000000014d6ee. [email protected] 7.8 0.45% 2019-10-08 2024-11-21
CVE-2019-9133 When processing subtitles format media file, KMPlayer version 2018.12.24.14 or lower doesn't check object size correctly, which leads to integer underflow then to memory out-of-bound read/write. An attacker can exploit this issue by enticing an unsuspecting user to open a malicious file. [email protected] 5.5 1.71% 2019-04-09 2024-11-21
CVE-2017-16952 KMPlayer 4.2.2.4 allows remote attackers to cause a denial of service via a crafted NSV file. [email protected] 5.5 3.23% 2017-11-28 2026-05-13
CVE-2012-3841 Untrusted search path vulnerability in KMPlayer 3.2.0.19 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse ehtrace.dll that is located in the current working directory. [email protected] 9.3 3.32% 2012-07-03 2026-04-29
CVE-2011-2594 Heap-based buffer overflow in KMPlayer 3.0.0.1441, and possibly other versions, allows remote attackers to execute arbitrary code via a playlist (.KPL) file with a long Title field. [email protected] 9.3 4.00% 2011-09-02 2026-04-29
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence