MPlayer And Xine-Lib Multiple Remote Client-Side Buffer Overflow Vulnerabilities

BID:11987

Info

MPlayer And Xine-Lib Multiple Remote Client-Side Buffer Overflow Vulnerabilities

Bugtraq ID: 11987
Class: Boundary Condition Error
CVE:
Remote: Yes
Local: No
Published: Dec 16 2004 12:00AM
Updated: Dec 16 2004 12:00AM
Credit: Discovery is credited to anonymous researcher.
Vulnerable: xine xine-lib 1-rc7
xine xine-lib 1-rc6a
xine xine-lib 1-rc6
xine xine-lib 1-rc5
xine xine-lib 1-rc4
xine xine-lib 1-rc3c
+ Slackware Linux 9.1
+ Slackware Linux -current
xine xine-lib 1-rc3b
xine xine-lib 1-rc3a
xine xine-lib 1-rc3
xine xine-lib 1-rc2
xine xine-lib 1-rc1
xine xine-lib 1-rc0
xine xine 1-rc7
xine xine 1-rc6a
xine xine 1-rc6
xine xine 1-rc5
xine xine 1-rc4
xine xine 1-rc3b
xine xine 1-rc3a
xine xine 1-rc3
xine xine 1-rc2
xine xine 1-rc1
xine xine 1-rc1
xine xine 1-rc0a
xine xine 1-rc0
MPlayer MPlayer 1.0 pre5try1
MPlayer MPlayer 1.0 pre5
+ Gentoo Linux 1.4
+ Gentoo Linux
MPlayer MPlayer 1.0 pre4
MPlayer MPlayer 1.0 pre3try2
MPlayer MPlayer 1.0 pre3
MPlayer MPlayer 1.0 pre2
MPlayer MPlayer 1.0 pre1
MPlayer MPlayer 0.92.1
MPlayer MPlayer 0.92
MPlayer MPlayer 0.91
+ Mandriva Linux Mandrake 9.2
MPlayer MPlayer 0.90 rc series
MPlayer MPlayer 0.90 pre series
MPlayer MPlayer 0.90
MPlayer MPlayer 0.9 0rc4
+ Mandriva Linux Mandrake 9.1
Mandriva Linux Mandrake 10.1 x86_64
Mandriva Linux Mandrake 10.1
Mandriva Linux Mandrake 10.0 AMD64
Mandriva Linux Mandrake 10.0
Not Vulnerable: xine xine-lib 1-rc8
xine xine 1-rc8
MPlayer MPlayer 1.0 pre5try2

Discussion

MPlayer And Xine-Lib Multiple Remote Client-Side Buffer Overflow Vulnerabilities

Multiple remote, client side buffer overflow vulnerabilities reportedly affect xine-lib and MPlayer. These issues are due to a failure of the application to properly validate the length of user-supplied strings prior to copying them into static process buffers.

An attacker may exploit these issues to execute arbitrary code with the privileges of the user that activated the vulnerable application. This may facilitate unauthorized access or privilege escalation.

Exploit / POC

MPlayer And Xine-Lib Multiple Remote Client-Side Buffer Overflow Vulnerabilities

Symantec is currently aware that exploits have been developed to leverage some or all of these issues. The exploits are not known to be publicly available at this time.

Solution / Fix

MPlayer And Xine-Lib Multiple Remote Client-Side Buffer Overflow Vulnerabilities

Solution:
xine-lib 1-rc8 has been released dealing with this issue.

Mandrake Linux has released an advisory (MDKSA-2004:157) along with fixes dealing with this issue. Please see the referenced advisory for more information.

Gentoo Linux has made an advisory available dealing with this and other issues. All MPlayer users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose ">=media-video/mplayer-1.0_pre5-r5"

Please see the referenced Gentoo Linux advisory for more information.

Ubuntu has released an advisory USN-42-1 to address these issues. Please see the referenced advisory for more information.

Conectiva has released an advisory CLA-2005:910 to address various issues in MPlayer. Please see the referenced advisory for more information.


xine xine-lib 1-rc2

xine xine-lib 1-rc6a

xine xine-lib 1-rc6

xine xine-lib 1-rc3a

xine xine-lib 1-rc5

xine xine-lib 1-rc3b

xine xine-lib 1-rc1

xine xine-lib 1-rc7

xine xine-lib 1-rc4

xine xine-lib 1-rc3c

xine xine-lib 1-rc3

xine xine-lib 1-rc0

xine xine 1-rc5

MPlayer MPlayer 0.92

MPlayer MPlayer 1.0 pre3

MPlayer MPlayer 1.0 pre4

MPlayer MPlayer 1.0 pre5

MPlayer MPlayer 1.0 pre1

MPlayer MPlayer 1.0 pre2

MPlayer MPlayer 1.0 pre5try1

MPlayer MPlayer 1.0 pre3try2

References

MPlayer And Xine-Lib Multiple Remote Client-Side Buffer Overflow Vulnerabilities

References:

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report