CVE-2008-1161: Buffer Overflow
Published Mar 10, 2008
·Updated
Buffer overflow in the Matroska demuxer (demuxers/demuxmatroska.c) in xine-lib before 1.1.10.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Matroska file with invalid frame sizes.
Affected Software
1 affected component
Matroska demuxer<=1.1.10
Event History
Mar 10, 2008
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-1161?
CVE-2008-1161 has been rated as a medium severity vulnerability due to the potential for denial of service and possible arbitrary code execution.
2
How do I fix CVE-2008-1161?
To fix CVE-2008-1161, upgrade xine-lib to the version 1.1.10.1 or later.
3
What type of attack does CVE-2008-1161 enable?
CVE-2008-1161 enables remote attackers to cause a denial of service and may allow the execution of arbitrary code.
4
Which versions of xine-lib are affected by CVE-2008-1161?
CVE-2008-1161 affects xine-lib versions prior to 1.1.10.1.
5
What component of xine-lib is impacted by CVE-2008-1161?
CVE-2008-1161 impacts the Matroska demuxer component within xine-lib.