First published: Wed Dec 22 2004(Updated: )
Buffer overflow in the get_header function in asf_mmst_streaming.c for MPlayer 1.0pre5 allows remote attackers to execute arbitrary code via a crafted ASF video stream.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
DVD Player | =0.90 | |
DVD Player | =0.91 | |
DVD Player | =0.92 | |
DVD Player | =0.92.1 | |
DVD Player | =1.0_pre1 | |
DVD Player | =1.0_pre2 | |
DVD Player | =1.0_pre3 | |
DVD Player | =1.0_pre3try2 | |
DVD Player | =1.0_pre4 | |
DVD Player | =1.0_pre5 | |
DVD Player | =1.0_pre5try1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-1285 is categorized as a critical vulnerability due to its potential to allow remote code execution.
To fix CVE-2004-1285, upgrade MPlayer to version 1.0 or later to ensure that the vulnerability is patched.
CVE-2004-1285 affects MPlayer versions 0.90 through 1.0_pre5, including several intermediate pre-release versions.
Yes, CVE-2004-1285 can be exploited remotely through a crafted ASF video stream sent to the vulnerable MPlayer.
CVE-2004-1285 is classified as a buffer overflow vulnerability.