Show filters
67 Total Results
Displaying 31-40 of 67
Sort by:
Attacker Value
Unknown
CVE-2011-0723
Disclosure Date: May 20, 2011 (last updated October 04, 2023)
FFmpeg 0.5.x, as used in MPlayer and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed VC-1 file.
0
Attacker Value
Unknown
CVE-2010-3429
Disclosure Date: September 30, 2010 (last updated October 04, 2023)
flicvideo.c in libavcodec 0.6 and earlier in FFmpeg, as used in MPlayer and other products, allows remote attackers to execute arbitrary code via a crafted flic file, related to an "arbitrary offset dereference vulnerability."
0
Attacker Value
Unknown
CVE-2009-2896
Disclosure Date: August 20, 2009 (last updated October 04, 2023)
Buffer overflow in KMplayer 2.9.4.1433 and earlier allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long string in a subtitle (.srt) playlist file. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2009-2566
Disclosure Date: July 21, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in TFM MMPlayer 2.0, and possibly 2.0.0.30, allows remote attackers to execute arbitrary code via a long string in a playlist (.m3u) file.
0
Attacker Value
Unknown
CVE-2008-5616
Disclosure Date: December 17, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in the demux_open_vqf function in libmpdemux/demux_vqf.c in MPlayer 1.0 rc2 before r28150 allows remote attackers to execute arbitrary code via a malformed TwinVQ file.
0
Attacker Value
Unknown
CVE-2007-6718
Disclosure Date: October 20, 2008 (last updated October 04, 2023)
MPlayer, possibly 1.0rc1, allows remote attackers to cause a denial of service (SIGSEGV and application crash) via (1) a malformed MP3 file, as demonstrated by lol-mplayer.mp3; (2) a malformed Ogg Vorbis file, as demonstrated by lol-mplayer.ogg; (3) a malformed MPEG-1 file, as demonstrated by lol-mplayer.mpg; (4) a malformed MPEG-2 file, as demonstrated by lol-mplayer.m2v; (5) a malformed MPEG-4 AVI file, as demonstrated by lol-mplayer.avi; (6) a malformed FLAC file, as demonstrated by lol-mplayer.flac; (7) a malformed Ogg Theora file, as demonstrated by lol-mplayer.ogm; (8) a malformed WMV file, as demonstrated by lol-mplayer.wmv; or (9) a malformed AAC file, as demonstrated by lol-mplayer.aac. NOTE: vector 5 might overlap CVE-2007-4938, and vector 6 might overlap CVE-2008-0486.
0
Attacker Value
Unknown
CVE-2008-4610
Disclosure Date: October 20, 2008 (last updated October 04, 2023)
MPlayer allows remote attackers to cause a denial of service (application crash) via (1) a malformed AAC file, as demonstrated by lol-vlc.aac; or (2) a malformed Ogg Media (OGM) file, as demonstrated by lol-ffplay.ogm, different vectors than CVE-2007-6718.
0
Attacker Value
Unknown
CVE-2008-3827
Disclosure Date: September 29, 2008 (last updated October 04, 2023)
Multiple integer underflows in the Real demuxer (demux_real.c) in MPlayer 1.0_rc2 and earlier allow remote attackers to cause a denial of service (process termination) and possibly execute arbitrary code via a crafted video file that causes the stream_read function to read or write arbitrary memory.
0
Attacker Value
Unknown
CVE-2008-1558
Disclosure Date: March 31, 2008 (last updated October 04, 2023)
Uncontrolled array index in the sdpplin_parse function in stream/realrtsp/sdpplin.c in MPlayer 1.0 rc2 allows remote attackers to overwrite memory and execute arbitrary code via a large streamid SDP parameter. NOTE: this issue has been referred to as an integer overflow.
0
Attacker Value
Unknown
CVE-2008-0629
Disclosure Date: February 06, 2008 (last updated October 04, 2023)
Buffer overflow in stream_cddb.c in MPlayer 1.0rc2 and SVN before r25824 allows remote user-assisted attackers to execute arbitrary code via a CDDB database entry containing a long album title.
0