CVE-2005-1692: High severity xine gxine vulnerability
Published May 24, 2005
·Updated
Format string vulnerability in gxine 0.4.1 through 0.4.4, and other versions down to 0.3, allows remote attackers to execute arbitrary code via a ram file with a URL whose hostname contains format string specifiers.
Affected Software
4 affected components
xine gxine=0.41
xine gxine=0.42
xine gxine=0.43
xine gxine=0.44
Event History
May 24, 2005
CVE Published
via NVD·04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1692?
CVE-2005-1692 has a medium severity rating due to its potential for remote code execution.
2
How do I fix CVE-2005-1692?
To fix CVE-2005-1692, upgrade gxine to version 0.4.5 or later, which contains the necessary patches.
3
What versions of gxine are affected by CVE-2005-1692?
CVE-2005-1692 affects gxine versions 0.4.1 through 0.4.4, and earlier versions down to 0.3.
4
Can CVE-2005-1692 be exploited remotely?
Yes, CVE-2005-1692 can be exploited remotely through manipulated RAM files with malicious URLs.
5
What types of attacks can CVE-2005-1692 enable?
CVE-2005-1692 can enable attackers to execute arbitrary code on the affected systems.