First published: Wed Dec 22 2004(Updated: )
Heap-based buffer overflow in the demux_open_bmp function in demux_bmp.c for Unix MPlayer 1.0pre5 allows remote attackers to execute arbitrary code via a bitmap (BMP) file containing a large biClrUsed field.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MPlayer | =1.0_pre5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-1309 is classified as a critical vulnerability due to the potential for remote code execution.
To fix CVE-2004-1309, you should update to a patched version of MPlayer that addresses this buffer overflow.
CVE-2004-1309 affects users of Unix MPlayer version 1.0pre5.
CVE-2004-1309 is a heap-based buffer overflow vulnerability.
Yes, CVE-2004-1309 can be exploited by remote attackers through specially crafted BMP files.