Buffer overflow in url.c in MPlayer 1.0rc2 and SVN before r25823 allows remote malicious users to execute arbitrary code via a crafted URL that prevents the IPv6 parsing code from setting a pointer to NULL, which causes the buffer to be reused by the unescape code.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mplayer mplayer 1.02rc2 |