LWN.net Logo

mplayer: integer overflow

Package(s):mplayer CVE #(s):CVE-2008-3827
Created:October 7, 2008 Updated:January 12, 2009
Description: From the Debian advisory:

Felipe Andres Manzano discovered that mplayer, a multimedia player, is vulnerable to several integer overflows in the Real video stream demuxing code. These flaws could allow an attacker to cause a denial of service (a crash) or potentially the execution of arbitrary code by supplying a maliciously crafted video file.

Alerts:
Gentoo 200901-07:02 2009-01-12
Mandriva MDVSA-2008:219 2008-10-29
Debian DSA-1644-1 2008-10-05

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds