CVE-2004-1309: Buffer Overflow
Published Dec 22, 2004
·Updated
Heap-based buffer overflow in the demuxopenbmp function in demuxbmp.c for Unix MPlayer 1.0pre5 allows remote attackers to execute arbitrary code via a bitmap (BMP) file containing a large biClrUsed field.
Affected Software
1 affected component
MPlayer Unix MPlayer=1.0_pre5
Event History
Dec 22, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1309?
CVE-2004-1309 is classified as a critical vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2004-1309?
To fix CVE-2004-1309, you should update to a patched version of MPlayer that addresses this buffer overflow.
3
Who is affected by CVE-2004-1309?
CVE-2004-1309 affects users of Unix MPlayer version 1.0pre5.
4
What type of vulnerability is CVE-2004-1309?
CVE-2004-1309 is a heap-based buffer overflow vulnerability.
5
Can CVE-2004-1309 be exploited by an attacker?
Yes, CVE-2004-1309 can be exploited by remote attackers through specially crafted BMP files.