CVE-2007-2948: Buffer Overflow
Published Jun 7, 2007
·Updated
Multiple stack-based buffer overflows in stream/streamcddb.c in MPlayer before 1.0rc1try3 allow remote attackers to execute arbitrary code via a CDDB entry with a long (1) album title or (2) category.
Affected Software
1 affected component
MPlayer MPlayer=1.0_rc1
Remediation
Patch Available
Event History
Jun 7, 2007
CVE Published
09:30 PM
Jun 8, 2007
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-2948?
CVE-2007-2948 is considered critical due to its potential for remote code execution.
2
How do I fix CVE-2007-2948?
To fix CVE-2007-2948, upgrade to MPlayer version 1.0rc1try3 or later.
3
What types of attacks are possible with CVE-2007-2948?
CVE-2007-2948 allows remote attackers to execute arbitrary code through specially crafted CDDB entries.
4
Which versions of MPlayer are affected by CVE-2007-2948?
CVE-2007-2948 affects MPlayer versions prior to 1.0rc1try3.
5
What are the symptoms of exploitation of CVE-2007-2948?
Exploitation of CVE-2007-2948 may result in system crashes or unauthorized actions being performed.