First published: Tue Sep 18 2007(Updated: )
Heap-based buffer overflow in libmpdemux/aviheader.c in MPlayer 1.0rc1 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a .avi file with certain large "indx truck size" and nEntriesInuse values, and a certain wLongsPerEntry value.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mac OS X | ||
HP HP-UX | ||
HP Tru64 | ||
IBM AIX | ||
Ibm Os2 | ||
Linux Linux kernel | ||
Mandrakesoft Mandrake Linux | =2007 | |
Mandrakesoft Mandrake Linux | =2007 | |
Mandrakesoft Mandrake Linux | =2007.1 | |
Mandrakesoft Mandrake Linux | =2007.1 | |
Microsoft Windows 2000 | ||
Microsoft Windows 2003 Server | ||
Microsoft Windows 98 | ||
Microsoft Windows Me | ||
Microsoft Windows NT | =4.0 | |
Microsoft Windows XP | ||
Santa Cruz Operation Sco Unix | ||
Sun Solaris | ||
Windriver Bsdos | ||
Mplayer Mplayer | =1.0_rc1 | |
SGI IRIX |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.