Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2008-4610

Опубликовано: 20 окт. 2008
Источник: debian

Описание

MPlayer allows remote attackers to cause a denial of service (application crash) via (1) a malformed AAC file, as demonstrated by lol-vlc.aac; or (2) a malformed Ogg Media (OGM) file, as demonstrated by lol-ffplay.ogm, different vectors than CVE-2007-6718.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mplayerfixed1.0~rc2-20package
ffmpeg-debianunfixedpackage
ffmpegfixed7:2.4.1-1package
xmovieremovedpackage

Примечания

  • only the aac issue affected mplayer because it built against a copy of faad

  • the ogm issue is a problem in ffmpeg

  • just a crasher, no security implications known so far

  • http://sam.zoy.org/blog/2007-01-16-exposing-file-parsing-vulnerabilities

Связанные уязвимости

ubuntu
больше 17 лет назад

MPlayer allows remote attackers to cause a denial of service (application crash) via (1) a malformed AAC file, as demonstrated by lol-vlc.aac; or (2) a malformed Ogg Media (OGM) file, as demonstrated by lol-ffplay.ogm, different vectors than CVE-2007-6718.

nvd
больше 17 лет назад

MPlayer allows remote attackers to cause a denial of service (application crash) via (1) a malformed AAC file, as demonstrated by lol-vlc.aac; or (2) a malformed Ogg Media (OGM) file, as demonstrated by lol-ffplay.ogm, different vectors than CVE-2007-6718.

github
больше 3 лет назад

MPlayer allows remote attackers to cause a denial of service (application crash) via (1) a malformed AAC file, as demonstrated by lol-vlc.aac; or (2) a malformed Ogg Media (OGM) file, as demonstrated by lol-ffplay.ogm, different vectors than CVE-2007-6718.