CVE-2011-5162: Gomlab Gom Player

High severity, CVSS 9.3. EPSS: 6.8% chance of exploitation in the next 30 days.

Stack-based buffer overflow in GOM Player 2.1.33.5071 allows user-assisted remote attackers to execute arbitrary code via a .ASX file with a long URI in the "ref href" tag. NOTE: this issue exists because of a CVE-2007-0707 regression.

Affected products

  • Gomlab Gom Player: version 2.1.33.5071 only

Published 2012-09-15. Last modified 2026-06-16.