7.5
CVSSv2

CVE-2003-0835

Published: 17/11/2003 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple buffer overflows in asf_http_request of MPlayer prior to 0.92 allows remote malicious users to execute arbitrary code via an ASX header with a long hostname.

Vulnerable Product Search on Vulmon Subscribe to Product

mplayer mplayer 1.0_pre1

mplayer mplayer 0.90_rc4

mplayer mplayer 0.91

mplayer mplayer 0.90

mplayer mplayer 0.90_pre

mplayer mplayer 0.90_rc

Exploits

source: wwwsecurityfocuscom/bid/8702/info A vulnerability has been discovered in MPLayer when handling malformed streaming ASX file headers The problem occurs due to insufficient bounds checking performed within asf_http_request() It has been demonstrated that it is possible for a remote attacker to provide a malicious streaming ASX fil ...