First published: Thu Sep 15 2022(Updated: )
Certain The MPlayer Project products are vulnerable to Buffer Overflow via function asf_init_audio_stream() of libmpdemux/asfheader.c. This affects mplayer SVN-r38374-13.0.1 and mencoder SVN-r38374-13.0.1.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MPlayerHQ MEncoder | =svn-r38374-13.0.1 | |
Gapless Player SimZip | =svn-r38374-13.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38853 is considered a critical vulnerability due to the potential for arbitrary code execution from a buffer overflow.
To fix CVE-2022-38853, upgrade to the latest versions of MPlayer or MEncoder that contain the patch for this vulnerability.
CVE-2022-38853 affects MPlayer and MEncoder versions SVN-r38374-13.0.1.
CVE-2022-38853 is a buffer overflow vulnerability that can be exploited through the asf_init_audio_stream function.
Yes, CVE-2022-38853 can potentially be exploited remotely if an attacker can craft specifically designed ASF files.