Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
xine xine-lib 0.9.13 vulnerabilities and exploits
(subscribe to this query)
755
VMScore
CVE-2005-2967
Format string vulnerability in input_cdda.c in xine-lib 1-beta through 1-beta 3, 1-rc, 1.0 up to and including 1.0.2, and 1.1.1 allows remote servers to execute arbitrary code via format string specifiers in metadata in CDDB server responses when the victim plays a CD.
Xine Xine-lib 1.0
Xine Xine-lib 1.0.1
Xine Xine-lib 0.9.13
Xine Xine-lib 1.0.2
Xine Xine-lib 1.1.0
1 EDB exploit
755
VMScore
CVE-2006-1664
Buffer overflow in xine_list_delete_current in libxine 1.14 and previous versions, as distributed in xine-lib 1.1.1 and previous versions, allows remote malicious users to execute arbitrary code via a crafted MPEG stream.
Xine Xine-lib 1.0.1
Xine Xine-lib 1.0.2
Xine Xine-lib 1.0.3a
Xine Xine-lib 1.1.0
Xine Xine-lib 1.1.1
Xine Xine-lib 0.9.13
Xine Xine-lib 1.0
1 EDB exploit
383
VMScore
CVE-2008-3231
xine-lib prior to 1.1.15 allows remote malicious users to cause a denial of service (crash) via a crafted OGG file, as demonstrated by playing lol-ffplay.ogg with xine.
Xine Xine-lib 1.1.1
Xine Xine-lib 1.1.0
Xine Xine-lib 1.1.13
Xine Xine-lib 1.1.2
Xine Xine-lib 1.1.4
Xine Xine-lib 1.1.5
Xine Xine-lib 1
Xine Xine-lib 1.0.2
Xine Xine-lib 1.0.1
Xine Xine-lib 1.1.10.1
Xine Xine-lib 1.1.11.1
Xine Xine-lib 1.1.8
Xine Xine-lib 1.1.9
Xine Xine-lib 0.99
Xine Xine-lib 1.0.3a
Xine Xine-lib 1.1.3
Xine Xine-lib 1.1.12
Xine Xine-lib 1.1.6
Xine Xine-lib 1.1.7
Xine Xine-lib 0.9.8
Xine Xine-lib 0.9.13
Xine Xine-lib 1.0
383
VMScore
CVE-2008-5233
xine-lib 1.1.12, and other versions prior to 1.1.15, does not check for failure of malloc in circumstances including (1) the mymng_process_header function in demux_mng.c, (2) the open_mod_file function in demux_mod.c, and (3) frame_buffer allocation in the real_parse_audio_specif...
Xine Xine-lib 1.1.10.1
Xine Xine-lib 1.1.10
Xine Xine-lib 1.1.4
Xine Xine-lib 1.1.3
Xine Xine-lib 1.0
Xine Xine-lib 1
Xine Xine-lib 1.1.11.1
Xine Xine-lib 1.1.11
Xine Xine-lib 1.1.6
Xine Xine-lib 1.1.5
Xine Xine-lib 1.0.2
Xine Xine-lib 1.0.1
Xine Xine-lib 1 Beta11
Xine Xine-lib 1 Beta10
Xine Xine-lib 1 Beta3
Xine Xine-lib 1 Beta2
Xine Xine-lib 1.1.13
Xine Xine-lib
Xine Xine-lib 1.1.12
Xine Xine-lib 1.1.8
Xine Xine-lib 1.1.7
Xine Xine-lib 1.0.3a
828
VMScore
CVE-2008-5234
Multiple heap-based buffer overflows in xine-lib 1.1.12, and other versions prior to 1.1.15, allow remote malicious users to execute arbitrary code via vectors related to (1) a crafted metadata atom size processed by the parse_moov_atom function in demux_qt.c and (2) frame readin...
Xine Xine-lib 1.1.11.1
Xine Xine-lib 1.1.11
Xine Xine-lib 1.1.10.1
Xine Xine-lib 1.1.5
Xine Xine-lib 1.1.4
Xine Xine-lib 1.0.1
Xine Xine-lib 1.0
Xine Xine-lib 1
Xine Xine-lib 1 Beta10
Xine Xine-lib 1 Beta9
Xine Xine-lib 1 Beta2
Xine Xine-lib 1 Beta1
Xine Xine-lib
Xine Xine-lib 1.1.12
Xine Xine-lib 1.1.7
Xine Xine-lib 1.1.6
Xine Xine-lib 1.1.0
Xine Xine-lib 1.0.2
Xine Xine-lib 1 Beta12
Xine Xine-lib 1 Beta11
Xine Xine-lib 1 Beta4
Xine Xine-lib 1 Beta3
828
VMScore
CVE-2008-5245
xine-lib prior to 1.1.15 performs V4L video frame preallocation before ascertaining the required length, which has unknown impact and attack vectors, possibly related to a buffer overflow in the open_video_capture_device function in src/input/input_v4l.c.
Xine Xine-lib 1.1.9
Xine Xine-lib 1.1.9.1
Xine Xine-lib 1.1.2
Xine Xine-lib 1.1.1
Xine Xine-lib 1
Xine Xine-lib 1 Beta7
Xine Xine-lib 1 Beta6
Xine Xine-lib 1.1.11.1
Xine Xine-lib 1.1.11
Xine Xine-lib 1.1.6
Xine Xine-lib 1.1.5
Xine Xine-lib 1.0.2
Xine Xine-lib 1.0.1
Xine Xine-lib 1 Beta11
Xine Xine-lib 1 Beta10
Xine Xine-lib 1 Beta3
Xine Xine-lib 1 Beta2
Xine Xine-lib 1.1.13
Xine Xine-lib 1.1.12
Xine Xine-lib 1.1.8
Xine Xine-lib 1.1.7
Xine Xine-lib 1.0.3a
828
VMScore
CVE-2008-5246
Multiple heap-based buffer overflows in xine-lib prior to 1.1.15 allow remote malicious users to execute arbitrary code via vectors that send ID3 data to the (1) id3v22_interp_frame and (2) id3v24_interp_frame functions in src/demuxers/id3.c. NOTE: the provenance of this informat...
Xine Xine-lib 1.1.10
Xine Xine-lib 1.1.9
Xine Xine-lib 1.1.3
Xine Xine-lib 1.1.2
Xine Xine-lib 1
Xine Xine-lib 1 Beta8
Xine Xine-lib 1 Beta7
Xine Xine-lib 0.9.13
Xine Xine-lib
Xine Xine-lib 1.1.13
Xine Xine-lib 1.1.12
Xine Xine-lib 1.1.11.1
Xine Xine-lib 1.1.7
Xine Xine-lib 1.1.6
Xine Xine-lib 1.1.0
Xine Xine-lib 1.0.2
Xine Xine-lib 1 Beta12
Xine Xine-lib 1 Beta11
Xine Xine-lib 1 Beta4
Xine Xine-lib 1 Beta3
Xine Xine-lib 1.1.9.1
Xine Xine-lib 1.1.8
383
VMScore
CVE-2008-5239
xine-lib 1.1.12, and other 1.1.15 and previous versions versions, does not properly handle (a) negative and (b) zero values during unspecified read function calls in input_file.c, input_net.c, input_smb.c, and input_http.c, which allows remote malicious users to cause a denial of...
Xine Xine-lib 1.1.13
Xine Xine-lib 1.1.9.1
Xine Xine-lib 1.1.8
Xine Xine-lib 1.1.7
Xine Xine-lib 1.0.3a
Xine Xine-lib 1.1.0
Xine Xine-lib 1
Xine Xine-lib 1 Beta12
Xine Xine-lib 1 Beta5
Xine Xine-lib 1 Beta4
Xine Xine-lib 1.1.11
Xine Xine-lib 1.1.10.1
Xine Xine-lib 1.1.4
Xine Xine-lib 1.1.3
Xine Xine-lib 1.0
Xine Xine-lib 1 Beta9
Xine Xine-lib 1 Beta8
Xine Xine-lib 1 Beta1
Xine Xine-lib 0.9.13
Xine Xine-lib 1.1.12
Xine Xine-lib 1.1.11.1
Xine Xine-lib 1.1.6
383
VMScore
CVE-2008-5240
xine-lib 1.1.12, and other 1.1.15 and previous versions versions, relies on an untrusted input value to determine the memory allocation and does not check the result for (1) the MATROSKA_ID_TR_CODECPRIVATE track entry element processed by demux_matroska.c; and (2) PROP_TAG, (3) M...
Xine Xine-lib 1.1.12
Xine Xine-lib 1.1.11.1
Xine Xine-lib 1.1.6
Xine Xine-lib 1.1.5
Xine Xine-lib 1.0.2
Xine Xine-lib 1.0.1
Xine Xine-lib 1
Xine Xine-lib 1.1.10
Xine Xine-lib 1.1.9
Xine Xine-lib 1.1.9.1
Xine Xine-lib 1.1.2
Xine Xine-lib 1.1.1
Xine Xine-lib 1.1.11
Xine Xine-lib 1.1.10.1
Xine Xine-lib 1.1.4
Xine Xine-lib 1.1.3
Xine Xine-lib 1.0
Xine Xine-lib 1 Beta9
Xine Xine-lib 1 Beta8
Xine Xine-lib 1 Beta1
Xine Xine-lib 0.9.13
Xine Xine-lib 1 Beta11
383
VMScore
CVE-2008-5243
The real_parse_headers function in demux_real.c in xine-lib 1.1.12, and other 1.1.15 and previous versions versions, relies on an untrusted input length value to "reindex into an allocated buffer," which allows remote malicious users to cause a denial of service (crash)...
Xine Xine-lib 1.1.10.1
Xine Xine-lib 1.1.10
Xine Xine-lib 1.1.4
Xine Xine-lib 1.1.3
Xine Xine-lib 1
Xine Xine-lib 1 Beta9
Xine Xine-lib 1 Beta8
Xine Xine-lib 0.9.13
Xine Xine-lib 1.1.14
Xine Xine-lib 1.1.11.1
Xine Xine-lib 1.1.11
Xine Xine-lib 1.1.6
Xine Xine-lib 1.1.5
Xine Xine-lib 1.0.2
Xine Xine-lib 1.0.1
Xine Xine-lib 1.0
Xine Xine-lib 1 Beta11
Xine Xine-lib 1 Beta10
Xine Xine-lib 1 Beta3
Xine Xine-lib 1 Beta2
Xine Xine-lib 1 Beta1
Xine Xine-lib 1.1.9
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »