Work is still on-going for v8.6. We are a few weeks out till the final release, but it has come to our attention that there is a vulnerability in Zoom Player that can cause it to run code from within a JPEG file when trying to open a specially crafted JPEG file.
Rather than wait for the v8.6 to go final, we decided to issue a patch now and include a few easy to port features from the 8.6 code base.
Download Zoom Player MAX
Download Zoom Player PRO
Download Zoom Player FREE
Changes from v8.5.0:
* New Smart Play profile for the FRAPS raw video capture format.
* The ".TSP" file extension was missing under the 'video' section in
file browsing interfaces. You need to press the "Default" button in
the options dialog (Adv. Options / File Format Association /
File Extensions).
- An exploit that could cause arbitrary code execution when loading
a specially crafted JPEG file has been fixed.
We would like to thank security researcher 'Debasish Mandal' for
notifying us of the exploit.
- The FREE version was not supposed to support Audio Visualizations,
but a bug allowed you to enable support which resulted in a
'list index out of bounds' error.
- Audio files with ID3v2.4 tags encoded as UTF8 did not display TAG info.
- The Audio Visualization feature did not work correctly with some Sonique
visualization plugins.
- The "DefaultSettings.exe" application was not able reset Zoom Player to
it's default settings under some circumstances.












