CVE-2007-4938
- EPSS 9.72%
- Veröffentlicht 18.09.2007 19:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Heap-based buffer overflow in libmpdemux/aviheader.c in MPlayer 1.0rc1 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a .avi file with certain large "indx truck size" and nE...
CVE-2007-2948
- EPSS 12.79%
- Veröffentlicht 07.06.2007 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple stack-based buffer overflows in stream/stream_cddb.c in MPlayer before 1.0rc1try3 allow remote attackers to execute arbitrary code via a CDDB entry with a long (1) album title or (2) category.
CVE-2007-1387
- EPSS 5.11%
- Veröffentlicht 13.03.2007 19:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The DirectShow loader (loader/dshow/DS_VideoDecoder.c) in MPlayer 1.0rc1 and earlier, as used in xine-lib, does not set the biSize before use in a memcpy, which allows user-assisted remote attackers to cause a buffer overflow and possibly execute arb...
CVE-2007-1246
- EPSS 9.3%
- Veröffentlicht 03.03.2007 19:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The DMO_VideoDecoder_Open function in loader/dmo/DMO_VideoDecoder.c in MPlayer 1.0rc1 and earlier, as used in xine-lib, does not set the biSize before use in a memcpy, which allows user-assisted remote attackers to cause a buffer overflow and possibl...
CVE-2006-6172
- EPSS 4.46%
- Veröffentlicht 30.11.2006 15:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in the asmrp_eval function in the RealMedia RTSP stream handler (asmrp.c) for Real Media input plugin, as used in (1) xine/xine-lib, (2) MPlayer 1.0rc1 and earlier, and possibly others, allows remote attackers to cause a denial of ser...
CVE-2006-1502
- EPSS 4.37%
- Veröffentlicht 30.03.2006 00:06:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Multiple integer overflows in MPlayer 1.0pre7try2 allow remote attackers to cause a denial of service and trigger heap-based buffer overflows via (1) a certain ASF file handled by asfheader.c that causes the asf_descrambling function to be passed a n...
CVE-2006-0579
- EPSS 5.66%
- Veröffentlicht 08.02.2006 01:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Multiple integer overflows in (1) the new_demux_packet function in demuxer.h and (2) the demux_asf_read_packet function in demux_asf.c in MPlayer 1.0pre7try2 and earlier allow remote attackers to execute arbitrary code via an ASF file with a large pa...
CVE-2005-2718
- EPSS 4.1%
- Veröffentlicht 29.08.2005 20:14:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in ad_pcm.c in MPlayer 1.0pre7 and earlier allows remote attackers to execute arbitrary code via crafted PCM audio data, as demonstrated using a video file with an audio header containing a large value in a stream format (strf) chunk.
CVE-2005-1195
- EPSS 1.74%
- Veröffentlicht 02.05.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Multiple heap-based buffer overflows in the code used to handle (1) MMS over TCP (MMST) streams or (2) RealMedia RTSP streams in xine-lib before 1.0, and other products that use xine-lib such as MPlayer 1.0pre6 and earlier, allow remote malicious ser...
- EPSS 3.42%
- Veröffentlicht 10.01.2005 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Integer overflow in the real_setup_and_get_header function in real.c for Unix MPlayer 1.0pre5 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a Real RTSP streaming media file with a -1 ...