10

CVE-2004-0433

Multiple buffer overflows in the Real-Time Streaming Protocol (RTSP) client for (1) MPlayer before 1.0pre4 and (2) xine lib (xine-lib) before 1-rc4, when playing Real RTSP (realrtsp) streams, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (a) long URLs, (b) long Real server responses, or (c) long Real Data Transport (RDT) packets.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MplayerMplayer Version1.0_pre3try2
XineXine-lib Version1_beta1
XineXine-lib Version1_beta2
XineXine-lib Version1_beta3
XineXine-lib Version1_beta4
XineXine-lib Version1_beta5
XineXine-lib Version1_beta6
XineXine-lib Version1_beta7
XineXine-lib Version1_beta8
XineXine-lib Version1_beta9
XineXine-lib Version1_beta10
XineXine-lib Version1_beta11
XineXine-lib Version1_rc2
XineXine-lib Version1_rc3a
XineXine-lib Version1_rc3b
XineXine-lib Version1_rc3c
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.09% 0.855
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C