Oval Definition:oval:org.mitre.oval:def:13509
Revision Date:2015-02-23Version:23
Title:DSA-2044-1 mplayer -- integer overflow
Description:tixxDZ discovered a vulnerability in the mplayer movie player. Missing data validation in mplayer’s real data transport implementation enable an integer underflow and consequently an unbounded buffer operation. A maliciously crafted stream could thus enable an attacker to execute arbitrary code. No Common Vulnerabilities and Exposures project identifier is available for this issue. For the stable distribution , this problem has been fixed in version 1:1.0~rc2-17+lenny3.2. We recommend that you upgrade your mplayer packages.
Family:unixClass:patch
Status:ACCEPTEDReference(s):DSA-2044-1
Platform(s):Debian GNU/Linux 5.0
Product(s):mplayer
Definition Synopsis
  • Debian GNU/Linux 5.0 is installed
  • AND Architecture section
  • Architecture independet section
  • Installed architecture is all
  • AND mplayer-doc DPKG is earlier than 1:1.0~rc2-17+lenny3.2
  • OR mplayer-dbg DPKG is earlier than 1:1.0~rc2-17+lenny3.2
  • OR mplayer DPKG is earlier than 1:1.0~rc2-17+lenny3.2
  • BACK