Описание
Array index vulnerability in libmpdemux/demux_audio.c in MPlayer 1.0rc2 and SVN before r25917, and possibly earlier versions, as used in Xine-lib 1.1.10, might allow remote attackers to execute arbitrary code via a crafted FLAC tag, which triggers a buffer overflow.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | not-affected | |
| devel | released | 2:1.0~rc2-0ubuntu9 |
| edgy | released | 2:0.99+1.0pre8-0ubuntu8.2 |
| feisty | released | 2:1.0~rc1-0ubuntu9.3 |
| gutsy | released | 2:1.0~rc1-0ubuntu13.2 |
| hardy | released | 2:1.0~rc2-0ubuntu9 |
| upstream | needed |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | not-affected | 1.1.1+ubuntu2-7.7 |
| devel | not-affected | 1.1.11.1-1ubuntu3 |
| edgy | ignored | end of life, was needed |
| feisty | released | 1.1.4-2ubuntu3.1 |
| gutsy | released | 1.1.7-1ubuntu1.3 |
| hardy | not-affected | 1.1.11.1-1ubuntu3 |
| upstream | released | 1.1.10.1-1 |
Показывать по
EPSS
7.5 High
CVSS2
Связанные уязвимости
Array index vulnerability in libmpdemux/demux_audio.c in MPlayer 1.0rc2 and SVN before r25917, and possibly earlier versions, as used in Xine-lib 1.1.10, might allow remote attackers to execute arbitrary code via a crafted FLAC tag, which triggers a buffer overflow.
Array index vulnerability in libmpdemux/demux_audio.c in MPlayer 1.0rc2 and SVN before r25917, and possibly earlier versions, as used in Xine-lib 1.1.10, might allow remote attackers to execute arbitrary code via a crafted FLAC tag, which triggers a buffer overflow.
Array index vulnerability in libmpdemux/demux_audio.c in MPlayer 1.0rc ...
Array index vulnerability in libmpdemux/demux_audio.c in MPlayer 1.0rc2 and SVN before r25917, and possibly earlier versions, as used in Xine-lib 1.1.10, might allow remote attackers to execute arbitrary code via a crafted FLAC tag, which triggers a buffer overflow.
EPSS
7.5 High
CVSS2