Vulnerability Name:

CVE-2009-0698 (CCN-48954)

Assigned:2009-01-28
Published:2009-01-28
Updated:2018-10-10
Summary:Integer overflow in the 4xm demuxer (demuxers/demux_4xm.c) in xine-lib 1.1.16.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a 4X movie file with a large current_track value, a similar issue to CVE-2009-0385.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
5.5 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
6.8 Medium (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P)
5.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-189
Vulnerability Consequences:Gain Access
References:Source: CONFIRM
Type: UNKNOWN
http://bugs.xine-project.org/show_bug.cgi?id=205

Source: MITRE
Type: CNA
CVE-2009-0698

Source: SUSE
Type: UNKNOWN
SUSE-SR:2009:009

Source: CONFIRM
Type: Patch
http://sourceforge.net/project/shownotes.php?release_id=660071

Source: CCN
Type: SourceForge.net: Files
xine - a free video player, File Release Notes and Changelog, Release Name: 1.1.16.2

Source: CCN
Type: GLSA-201006-04
xine-lib: User-assisted execution of arbitrary code

Source: MANDRIVA
Type: UNKNOWN
MDVSA-2009:298

Source: MANDRIVA
Type: UNKNOWN
MDVSA-2009:299

Source: BUGTRAQ
Type: UNKNOWN
20090128 [TKADV2009-004] FFmpeg Type Conversion Vulnerability

Source: MISC
Type: UNKNOWN
http://www.trapkit.de/advisories/TKADV2009-004.txt

Source: CCN
Type: USN-746-1
xine-lib vulnerability

Source: UBUNTU
Type: UNKNOWN
USN-746-1

Source: CCN
Type: USN-763-1
xine-lib vulnerabilities

Source: XF
Type: UNKNOWN
xinelib-4xmdemuxer-code-execution(48954)

Source: XF
Type: UNKNOWN
xinelib-4xmdemuxer-code-execution(48954)

Source: SUSE
Type: SUSE-SR:2009:009
SUSE Security Summary Report

Vulnerable Configuration:Configuration 1:
  • cpe:/a:xine:xine-lib:1.1.16.1:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:xine:xine-lib:1.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1.1.10:*:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1.1.12:*:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1.1.11:*:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1.1.13:*:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1.1.14:*:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1.0.2:*:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1.0:*:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1:rc8:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1:rc7:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1:rc6a:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1_rc6:*:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1:rc5:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1:rc4:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1:rc3c:*:*:*:*:*:*
  • OR cpe:/a:xine:xine-lib:1.1.15:*:*:*:*:*:*:*
  • AND
  • cpe:/o:gentoo:linux:*:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:3.0:*:*:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:6.06::lts:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:3.0::x86_64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.0::x86-64:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:7.10:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2008.0:*:*:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:8.04::lts:*:*:*:*:*
  • OR cpe:/o:mandriva:linux:2009.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandriva:linux:2009.0:-:x86_64:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20090698
    V
    CVE-2009-0698
    2017-09-27
    oval:org.mitre.oval:def:13445
    P
    USN-763-1 -- xine-lib vulnerabilities
    2014-06-30
    oval:org.mitre.oval:def:13748
    P
    USN-746-1 -- xine-lib vulnerability
    2014-06-30
    BACK
    xine xine-lib 1.1.16.1
    xine xine-lib 1.1.1
    xine xine-lib 1.1.10
    xine xine-lib 1.1.12
    xine xine-lib 1.1.11
    xine xine-lib 1.1.13
    xine xine-lib 1.1.14
    xine xine-lib 1.0.2
    xine xine-lib 1.0.1
    xine xine-lib 1.0
    xine xine-lib 1 rc8
    xine xine-lib 1 rc7
    xine xine-lib 1 rc6a
    xine xine-lib 1_rc6
    xine xine-lib 1 rc5
    xine xine-lib 1 rc4
    xine xine-lib 1 rc3c
    xine xine-lib 1.1.15
    gentoo linux *
    mandrakesoft mandrake linux corporate server 3.0
    canonical ubuntu 6.06
    mandrakesoft mandrake linux corporate server 3.0
    mandrakesoft mandrake linux 2008.0
    canonical ubuntu 7.10
    mandrakesoft mandrake linux 2008.0
    canonical ubuntu 8.04
    mandriva linux 2009.0
    mandriva linux 2009.0 -