7.6
CVSSv2

CVE-2007-4938

Published: 18/09/2007 Updated: 15/10/2018
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
VMScore: 765
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap-based buffer overflow in libmpdemux/aviheader.c in MPlayer 1.0rc1 and previous versions allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a .avi file with certain large "indx truck size" and nEntriesInuse values, and a certain wLongsPerEntry value.

Vulnerable Product Search on Vulmon Subscribe to Product

mplayer mplayer 1.0_rc1

sgi irix

Vendor Advisories

Debian Bug report logs - #443478 CVE remote denial of service in aviheaderc Package: mplayer; Maintainer for mplayer is Debian Multimedia Maintainers <debian-multimedia@listsdebianorg>; Source for mplayer is src:mplayer (PTS, buildd, popcon) Reported by: Nico Golde <nion@debianorg> Date: Fri, 21 Sep 2007 17:00:02 ...

Exploits

source: wwwsecurityfocuscom/bid/25648/info MPlayer is prone to a heap-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied input data Attackers can exploit this issue to execute arbitrary code with the privileges of the user running the application Failed attacks will result in denia ...