Multiple integer underflows in the Real demuxer (demux_real.c) in MPlayer 1.0_rc2 and previous versions allow remote malicious users to cause a denial of service (process termination) and possibly execute arbitrary code via a crafted video file that causes the stream_read function to read or write arbitrary memory.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mplayer mplayer 1.0_rc1 |
||
mplayer mplayer 1.0_pre2 |
||
mplayer mplayer 1.0_pre6 |
||
mplayer mplayer 1.0_pre7 |
||
mplayer mplayer 0.90_rc4 |
||
mplayer mplayer 0.90_rc |
||
mplayer mplayer 1.0_pre4 |
||
mplayer mplayer 1.0_pre5 |
||
mplayer mplayer 1.0_pre1 |
||
mplayer mplayer 0.92_cvs |
||
mplayer mplayer |
||
mplayer mplayer 1.0_pre5try1 |
||
mplayer mplayer 1.0_pre5try2 |
||
mplayer mplayer 0.92 |
||
mplayer mplayer 0.91 |
||
mplayer mplayer 1.0_pre3 |
||
mplayer mplayer 1.0_pre3try2 |
||
mplayer mplayer 1.0_pre7try2 |
||
mplayer mplayer 0.92.1 |
||
mplayer mplayer 0.90_pre |
||
mplayer mplayer 0.90 |