Computer Security
[EN] securityvulns.ru
no-pyccku



CVECVE-2008-0486
StatusCandidate
DescriptionArray index vulnerability in libmpdemux/demux_audio.c in MPlayer 1.0rc2 and SVN before r25917, and possibly earlier versions, as used in Xine-lib 1.1.10, might allow remote attackers to execute arbitrary code via a crafted FLAC tag, which triggers a buffer overflow.
PhaseAssigned (29.01.2008)
SecurityVulns:Mplayer / Xine multiple security vulnerabilities
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0486
ReferencesBID : 27441
 BUGTRAQ : 20080204 CORE-2007-1218: MPlayer 1.0rc2 buffer overflow vulnerability
 CONFIRM : http://www.mplayerhq.hu/design7/news.html
 FRSIRT : ADV-2008-0406
 FULLDISC : 20080204 CORE-2007-1218: MPlayer 1.0rc2 buffer overflow vulnerability
 MISC : http://www.coresecurity.com/?action=item&id=2103
 SECUNIA : 28779

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru