CVE-2008-3827: Critical severity dvd player vulnerability
Multiple integer underflows in the Real demuxer (demuxreal.c) in MPlayer 1.0rc2 and earlier allow remote attackers to cause a denial of service (process termination) and possibly execute arbitrary code via a crafted video file that causes the streamread function to read or write arbitrary memory.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3827?
CVE-2008-3827 has been classified as a high severity vulnerability due to its potential for remote code execution and denial of service.
How do I fix CVE-2008-3827?
To mitigate CVE-2008-3827, users should upgrade their MPlayer to a version later than 1.0_rc2.
What systems are affected by CVE-2008-3827?
CVE-2008-3827 affects multiple versions of MPlayer, including versions up to and including 1.0_rc2.
What are the potential consequences of CVE-2008-3827?
Exploitation of CVE-2008-3827 could lead to process termination and may allow attackers to execute arbitrary code.
Is there a workaround for CVE-2008-3827?
No specific workaround is recommended for CVE-2008-3827; upgrading MPlayer is the best protection.