Описание
Integer overflow in the demuxer function in libmpdemux/demux_gif.c in Mplayer allows remote attackers to cause a denial of service (crash) via large dimensions in a gif file.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| mplayer | fixed | 2:1.3.0-2 | package | |
| mplayer2 | removed | package | ||
| mplayer2 | no-dsa | jessie | package |
Примечания
https://trac.mplayerhq.hu/ticket/2295
Fixed in Revision r37857 upstream
https://www.openwall.com/lists/oss-security/2016/04/29/3
Связанные уязвимости
Integer overflow in the demuxer function in libmpdemux/demux_gif.c in Mplayer allows remote attackers to cause a denial of service (crash) via large dimensions in a gif file.
Integer overflow in the demuxer function in libmpdemux/demux_gif.c in Mplayer allows remote attackers to cause a denial of service (crash) via large dimensions in a gif file.
Integer overflow in the demuxer function in libmpdemux/demux_gif.c in Mplayer allows remote attackers to cause a denial of service (crash) via large dimensions in a gif file.