CVE-2006-0579: Integer Overflow
Multiple integer overflows in (1) the newdemuxpacket function in demuxer.h and (2) the demuxasfreadpacket function in demuxasf.c in MPlayer 1.0pre7try2 and earlier allow remote attackers to execute arbitrary code via an ASF file with a large packet length value. NOTE: the provenance of this information is unknown; portions of the details are obtained from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0579?
CVE-2006-0579 is classified as a critical vulnerability allowing remote code execution.
How do I fix CVE-2006-0579?
To fix CVE-2006-0579, update MPlayer to version 1.0pre7try3 or later.
What causes CVE-2006-0579?
CVE-2006-0579 is caused by multiple integer overflows in specific functions within MPlayer when handling malformed ASF files.
Which versions of MPlayer are affected by CVE-2006-0579?
MPlayer versions up to and including 1.0pre7try2 are affected by CVE-2006-0579.
Can CVE-2006-0579 be exploited remotely?
Yes, CVE-2006-0579 can be exploited remotely by a malicious ASF file with a large packet length.