CVE-2019-25604 - CVE House
Back to Database
Status published High CVE-2019-25604

DVDXPlayer Pro 5.5 Local Buffer Overflow with SEH

Vulnerability Description

DVDXPlayer Pro 5.5 contains a local buffer overflow vulnerability with structured exception handling that allows local attackers to execute arbitrary code by crafting malicious playlist files. Attackers can create a specially crafted .plf file containing shellcode and NOP sleds that overflows a buffer and hijacks the SEH chain to execute arbitrary code with application privileges.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-25604

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Kevin Randall

Affected Vendor

Dvd-X-Player

View all reports →

Affected Software

DVDXPlayer
Vulnerable Versions:
5.5 Pro

Timeline

Official Publish: March 22nd, 2026
Last Modified: July 15th, 2026
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses (CWE)