PT-2004-1570 · Mplayer+1 · Mplayer+1

Publicado

2004-05-05

·

Atualizado

2017-07-11

·

CVE-2004-0433

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions MPlayer versions prior to 1.0pre4 xine lib (xine-lib) versions prior to 1-rc4
Description The issue is related to multiple buffer overflows in the Real-Time Streaming Protocol (RTSP) client. This can be triggered when playing Real RTSP streams, allowing remote attackers to cause a denial of service or possibly execute arbitrary code. The overflows can occur due to long URLs, long Real server responses, or long Real Data Transport (RDT) packets.
Recommendations For MPlayer versions prior to 1.0pre4, update to version 1.0pre4 or later to resolve the issue. For xine lib (xine-lib) versions prior to 1-rc4, update to version 1-rc4 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2004-0433

Produtos afetados

Mplayer
Xine-Lib