CVE-2013-3259: Inmatrix Zoom Player

Medium severity, CVSS 6.8. EPSS: 3% chance of exploitation in the next 30 days.

Stack-based buffer overflow in INMATRIX Zoom Player before 8.7 beta 11 allows remote attackers to execute arbitrary code via a large biClrUsed value in a BMP file.

Affected products

  • Inmatrix Zoom Player: up to and including 8.6.1; version 8.00 only; version 8.1.1 only; version 8.1.5 only; version 8.1.6 only; version 8.5 only; …

Published 2014-03-03. Last modified 2026-06-16.