CVE-2004-1951: Medium severity xine xine vulnerability
xine 1.x alpha, 1.x beta, and 1.0rc through 1.0rc3a, and xine-ui 0.9.21 to 0.9.23 allows remote attackers to overwrite arbitrary files via the (1) audio.sunaudiodevice or (2) dxr3.devicename options in an MRL link.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-1951?
CVE-2004-1951 has a medium severity rating due to the potential for remote attackers to overwrite arbitrary files.
How do I fix CVE-2004-1951?
To fix CVE-2004-1951, users should upgrade to a patched version of xine or xine-ui that resolves this vulnerability.
Which versions are affected by CVE-2004-1951?
CVE-2004-1951 affects xine versions 1.x alpha, 1.x beta, versions through 1.0rc3a, and xine-ui versions 0.9.21 to 0.9.23.
What exploit does CVE-2004-1951 enable?
CVE-2004-1951 enables remote attackers to overwrite arbitrary files on a vulnerable system.
Is CVE-2004-1951 related to specific devices or configurations?
Yes, CVE-2004-1951 is related to the audio.sun_audio_device or dxr3.devicename options in an MRL link.