LWN.net Logo

mplayer: heap overflow

Package(s):mplayer CVE #(s):CAN-2005-2718
Created:September 1, 2005 Updated:September 7, 2005
Description: mplayer's ad_pcm.c code has a heap overflow vulnerability. The faulty code handles the strf chunk of PCM audio streams. A maliciously created audio or video file could be created, allowing code to be executed with the privileges of the user who is running mplayer.
Alerts:
Mandriva MDKSA-2005:158 2005-09-06
Gentoo 200509-01 2005-09-01

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds