CVE-2004-1379: Buffer Overflow
Heap-based buffer overflow in the DVD subpicture decoder in xine xine-lib 1-rc5 and earlier allows remote attackers to execute arbitrary code via a (1) DVD or (2) MPEG subpicture header where the second field reuses RLE data from the end of the first field.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-1379?
CVE-2004-1379 is classified as a critical vulnerability due to its potential for remote code execution.
How do I fix CVE-2004-1379?
To address CVE-2004-1379, upgrade to the latest version of xine or xine-lib that includes the security patch.
What versions are affected by CVE-2004-1379?
CVE-2004-1379 affects multiple versions of xine and xine-lib, including 1-beta1 to 1-rc5.
What is a heap-based buffer overflow in CVE-2004-1379?
In CVE-2004-1379, a heap-based buffer overflow occurs when processing a DVD or MPEG subpicture header, potentially allowing arbitrary code execution.
Can CVE-2004-1379 be exploited remotely?
Yes, CVE-2004-1379 can be exploited remotely by attacking through specially crafted DVD or MPEG files.