VendorsGomlabgom_playerall versions
Vulnerabilities

Gomlab Gom Player

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2013-5715
Buffer overflow in Gretech GOM Media Player before 2.2.53.5169 has unspecified impact and attack vectors.
Published 2013-09-09 · Modified
10.0EPSS 0.018
CVE-2023-53874
GOM Player 2.3.90.5360 Buffer Overflow via Equalizer Preset Name
Published 2025-12-15 · Analyzed
9.8EPSS 0.005
CVE-2011-5162
Stack-based buffer overflow in GOM Player 2.1.33.5071 allows user-assisted remote attackers to execute arbitrary code via a .ASX file with a long URI in the "ref href" tag. NOTE: this issue exists because of a CVE-2007-0707 regression.
Published 2012-09-15 · Modified
9.31 PoCEPSS 0.068
CVE-2009-1497
Stack-based buffer overflow in srt2smi.exe in Gretech Online Movie Player (GOM Player) 2.1.16.4635 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long string in an SRT file.
Published 2009-05-01 · Modified
9.31 PoCEPSS 0.068
CVE-2023-53875
GOM Player 2.3.90.5360 Remote Code Execution via Insecure IE Component
Published 2025-12-15 · Analyzed
8.8EPSS 0.004
CVE-2017-5881
GOM Player 2.3.10.5266 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted fpx file.
Published 2017-02-21 · Modified
7.81 PoCEPSS 0.082
CVE-2013-7184
Gretech GOM Media Player 2.2.56.5158 and earlier allows remote attackers to cause a denial of service (memory corruption) via a crafted AVI file.
Published 2014-01-24 · Modified
4.31 PoCEPSS 0.021
CVE-2013-5716
Gretech GOM Media Player 2.2.53.5169 and possibly earlier allows remote attackers to cause a denial of service (application crash) via a crafted WAV file.
Published 2013-09-09 · Modified
4.31 PoCEPSS 0.021
CVE-2014-3899
Gretech GOM Player 2.2.51.5149 and earlier allows remote attackers to cause a denial of service (launch outage) via a crafted image file.
Published 2014-08-12 · Modified
4.3EPSS 0.015