Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0486 (MPlayer, xine-lib)

BugsAlert Home > CVE-2008-0486 (MPlayer, xine-lib)
 
 

Array index vulnerability in libmpdemux/demux_audio.c in MPlayer 1.0rc2 and SVN before r25917, and possibly earlier versions, as used in Xine-lib 1.1.10, might allow remote attackers to execute arbitrary code via a crafted FLAC tag, which triggers a buffer overflow.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0486

Learn more about CVE-2008-0486 (MPlayer, xine-lib)
 
Tags: cve-2008-0486 mplayer xine-lib

Related Items

      Mandriva: Subject: [Security Announce] [ MDVSA-2008:203 ] awstats

      Vuln: eXtrovert software Thyme 'add_calendars.php' Cross Site Scripting Vulnerability

      Brief: Malware on legit sites poses most risk to users

      \ReflectionParameter->getClass()->getName() is broken.

      BAT_BATTEN.A

      CVE-2008-5734 (merak_mail_server)

      Ubuntu: OpenLDAP vulnerability

 

Pixel