First published: Wed Dec 22 2004(Updated: )
Heap-based buffer overflow in the pnm_get_chunk function for xine 0.99.2, and other packages such as MPlayer that use the same code, allows remote attackers to execute arbitrary code via long PNA_TAG values, a different vulnerability than CVE-2004-1188.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
xine xine | =1_rc6a | |
xine xine | =1_beta9 | |
Mplayer Mplayer | =0.92 | |
xine xine | =0.9.18 | |
xine xine | =1_beta3 | |
xine xine | =1_rc0a | |
xine xine-lib | =1_beta7 | |
Mplayer Mplayer | =1.0_pre2 | |
Mplayer Mplayer | =0.90 | |
xine xine | =1_rc7 | |
Mplayer Mplayer | =1.0_pre1 | |
Mplayer Mplayer | =0.90_rc | |
xine xine-lib | =1_rc3 | |
xine xine | =1_rc4 | |
xine xine-lib | =1_beta9 | |
Mplayer Mplayer | =1.0_pre5try2 | |
xine xine | =1_alpha | |
xine xine-lib | =1_rc3b | |
xine xine-lib | =1_alpha | |
xine xine | =1_beta4 | |
Mplayer Mplayer | =head_cvs | |
Mplayer Mplayer | =0.92.1 | |
xine xine-lib | =0.9.8 | |
xine xine-lib | =1_beta4 | |
xine xine-lib | =1_rc5 | |
xine xine | =1_rc3b | |
xine xine | =1_beta2 | |
xine xine | =0.9.8 | |
Mplayer Mplayer | =1.0_pre3 | |
xine xine | =1_rc3a | |
xine xine-lib | =1_rc6a | |
xine xine | =1_rc2 | |
xine xine | =1_rc8 | |
xine xine-lib | =1_rc3c | |
Mplayer Mplayer | =0.92_cvs | |
xine xine | =1_beta10 | |
Mplayer Mplayer | =1.0_pre5 | |
xine xine | =1_beta12 | |
Mplayer Mplayer | =0.91 | |
xine xine | =1_beta11 | |
xine xine | =1_beta7 | |
xine xine | =1_beta8 | |
xine xine | =0.9.13 | |
xine xine | =1_rc1 | |
xine xine-lib | =1_rc2 | |
xine xine | =1_rc5 | |
xine xine-lib | =1_beta2 | |
xine xine-lib | =1_rc0 | |
xine xine-lib | =1_beta5 | |
xine xine-lib | =1_beta11 | |
Mplayer Mplayer | =1.0_pre5try1 | |
xine xine | =1_beta6 | |
xine xine-lib | =0.99 | |
xine xine | =1_beta1 | |
xine xine-lib | =0.9.13 | |
xine xine-lib | =1_rc6 | |
Mplayer Mplayer | =1.0_pre3try2 | |
xine xine | =1_rc6 | |
xine xine-lib | =1_beta6 | |
xine xine | =1_rc3 | |
xine xine-lib | =1_rc1 | |
xine xine-lib | =1_rc3a | |
xine xine-lib | =1_beta1 | |
xine xine | =1_rc0 | |
xine xine-lib | =1_beta12 | |
xine xine-lib | =1_rc4 | |
Mplayer Mplayer | =0.90_pre | |
xine xine | =1_beta5 | |
xine xine-lib | =1_beta10 | |
Mplayer Mplayer | =0.90_rc4 | |
xine xine-lib | =1_beta8 | |
Mplayer Mplayer | =1.0_pre4 | |
xine xine-lib | =1_beta3 | |
xine xine-lib | =1_rc7 | |
Mandrakesoft Mandrake Linux | =10.1 | |
Mandrakesoft Mandrake Linux | =10.0 | |
Mandrakesoft Mandrake Linux | =10.0 | |
Mandrakesoft Mandrake Linux | =10.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.