CVE Database
/

CVE-2008-1489

Back to search

CVE-2008-1489

Published: Mar 25, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

Integer overflow in the MP4_ReadBox_rdrf function in libmp4.c for VLC 0.8.6e allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted MP4 RDRF box that triggers a heap-based buffer overflow, a different vulnerability than CVE-2008-0984.

VendorProductVersions

n/a

n/a

affected
n/a

References

DSA-1543
vendor-advisory
x_refsource_DEBIAN
28433
vdb-entry
x_refsource_BID
GLSA-200804-25
vendor-advisory
x_refsource_GENTOO
29800
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:14841
vdb-entry
signature
x_refsource_OVAL
29766
third-party-advisory
x_refsource_SECUNIA
29503
third-party-advisory
x_refsource_SECUNIA
ADV-2008-0985
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now