CVE-2008-0629: Buffer Overflow
Published Feb 6, 2008
·Updated
Buffer overflow in streamcddb.c in MPlayer 1.0rc2 and SVN before r25824 allows remote user-assisted attackers to execute arbitrary code via a CDDB database entry containing a long album title.
Affected Software
1 affected component
MPlayer MPlayer=1.02rc2
Event History
Feb 6, 2008
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0629?
CVE-2008-0629 has a medium severity level due to the potential for remote code execution.
2
How do I fix CVE-2008-0629?
To fix CVE-2008-0629, update MPlayer to the latest version that addresses this vulnerability.
3
What type of attacks can exploit CVE-2008-0629?
CVE-2008-0629 can be exploited through user-assisted attacks involving malicious CDDB database entries.
4
Which versions of MPlayer are affected by CVE-2008-0629?
MPlayer versions 1.0rc2 and SVN before r25824 are affected by CVE-2008-0629.
5
What is the exploit mechanism of CVE-2008-0629?
CVE-2008-0629 exploits a buffer overflow vulnerability triggered by overly long album titles in CDDB entries.