Back to search
CVE-2008-0486
Published: Feb 5, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Array index vulnerability in libmpdemux/demux_audio.c in MPlayer 1.0rc2 and SVN before r25917, and possibly earlier versions, as used in Xine-lib 1.1.10, might allow remote attackers to execute arbitrary code via a crafted FLAC tag, which triggers a buffer overflow.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
3608
third-party-advisory
x_refsource_SREASON
28989
third-party-advisory
x_refsource_SECUNIA
ADV-2008-0406
vdb-entry
x_refsource_VUPEN
20080204 CORE-2007-1218: MPlayer 1.0rc2 buffer overflow vulnerability
mailing-list
x_refsource_FULLDISC
28918
third-party-advisory
x_refsource_SECUNIA
ADV-2008-0421
vdb-entry
x_refsource_VUPEN
20080204 CORE-2007-1218: MPlayer 1.0rc2 buffer overflow vulnerability
mailing-list
x_refsource_BUGTRAQ
http://www.mplayerhq.hu/design7/news.html
x_refsource_CONFIRM
MDVSA-2008:046
vendor-advisory
x_refsource_MANDRIVA
MDVSA-2008:045
vendor-advisory
x_refsource_MANDRIVA
28955
third-party-advisory
x_refsource_SECUNIA
28779
third-party-advisory
x_refsource_SECUNIA
http://www.coresecurity.com/?action=item&id=2103
x_refsource_MISC
29307
third-party-advisory
x_refsource_SECUNIA
31393
third-party-advisory
x_refsource_SECUNIA
https://bugzilla.redhat.com/show_bug.cgi?id=431541
x_refsource_CONFIRM
GLSA-200802-12
vendor-advisory
x_refsource_GENTOO
29601
third-party-advisory
x_refsource_SECUNIA
DSA-1496
vendor-advisory
x_refsource_DEBIAN
SUSE-SR:2008:006
vendor-advisory
x_refsource_SUSE
29141
third-party-advisory
x_refsource_SECUNIA
GLSA-200803-16
vendor-advisory
x_refsource_GENTOO
FEDORA-2008-1581
vendor-advisory
x_refsource_FEDORA
29323
third-party-advisory
x_refsource_SECUNIA
FEDORA-2008-1543
vendor-advisory
x_refsource_FEDORA
28956
third-party-advisory
x_refsource_SECUNIA
DSA-1536
vendor-advisory
x_refsource_DEBIAN
27441
vdb-entry
x_refsource_BID
http://sourceforge.net/project/shownotes.php?group_id=9655&release_id=574735
x_refsource_CONFIRM
http://bugs.gentoo.org/show_bug.cgi?id=209106
x_refsource_CONFIRM
http://bugs.xine-project.org/show_bug.cgi?id=38
x_refsource_CONFIRM
28801
third-party-advisory
x_refsource_SECUNIA
USN-635-1
vendor-advisory
x_refsource_UBUNTU
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now