Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-30145

Опубликовано: 18 мая 2021
Источник: debian

Описание

A format string vulnerability in mpv through 0.33.0 allows user-assisted remote attackers to achieve code execution via a crafted m3u playlist file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mpvfixed0.32.0-3package
mpvno-dsabusterpackage
mpvpostponedstretchpackage

Примечания

  • https://github.com/mpv-player/mpv/commit/cb3fa04bcb2ba9e0d25788480359157208c13e0b

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 4 лет назад

A format string vulnerability in mpv through 0.33.0 allows user-assisted remote attackers to achieve code execution via a crafted m3u playlist file.

CVSS3: 7.8
nvd
больше 4 лет назад

A format string vulnerability in mpv through 0.33.0 allows user-assisted remote attackers to achieve code execution via a crafted m3u playlist file.

suse-cvrf
больше 4 лет назад

Security update for mpv

CVSS3: 7.8
github
больше 3 лет назад

A format string vulnerability in mpv through 0.33.0 allows user-assisted remote attackers to achieve code execution via a crafted m3u playlist file.