LWN.net Logo

MPlayer: GUI filename handling overflow

Package(s):mplayer CVE #(s):
Created:August 2, 2004 Updated:August 4, 2004
Description: The MPlayer GUI code contains several buffer overflow vulnerabilities, and at least one in the TranslateFilename() function is exploitable. By enticing a user to play a file with a carefully crafted filename an attacker could execute arbitrary code with the permissions of the user running MPlayer.
Alerts:
Gentoo 200408-01 2004-08-01

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds