|
LinuxSecurity.com: Alin Rad Pop found an array index vulnerability in the SDP parser of xine-lib. If a user or automated system were tricked into opening a malicious RTSP stream, a remote attacker could possibly execute arbitrary code with the privileges of the user using the program (CVE-2008-0073).
Original Source: http://www.linuxsecurity.com/content/view/141183?rdf
Learn more about Mandriva: Subject: [Security Announce] [ MDVSA-2008:178 ] xine-lib |