MPlayer Audio Header Buffer Overflow Vulnerability
BID:14652
Info
MPlayer Audio Header Buffer Overflow Vulnerability
| Bugtraq ID: | 14652 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2005-2718 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 24 2005 12:00AM |
| Updated: | Jul 12 2009 05:06PM |
| Credit: | Sven Tantau <[email protected]> disclosed this issue. |
| Vulnerable: |
MPlayer MPlayer 1.0 pre6-r4 MPlayer MPlayer 1.0 pre6-3.3.5-20050130 MPlayer MPlayer 1.0 pre6 MPlayer MPlayer 1.0 pre5 MPlayer MPlayer 1.0 pre3 MPlayer MPlayer 1.0pre7try2 Mandriva Linux Mandrake 10.2 x86_64 Mandriva Linux Mandrake 10.2 Mandriva Linux Mandrake 10.1 x86_64 Mandriva Linux Mandrake 10.1 MandrakeSoft Corporate Server 3.0 x86_64 MandrakeSoft Corporate Server 3.0 Gentoo Linux |
| Not Vulnerable: | |
Discussion
MPlayer Audio Header Buffer Overflow Vulnerability
A buffer-overflow vulnerability affects MPlayer. The application fails to properly validate the length of user-supplied strings before copying them into static process buffers.
The problem presents itself when the affected application tries to process audio streams that contain overly large values in their header.
An attacker may exploit this issue to execute arbitrary code with the privileges of the user that activated the vulnerable application. This may facilitate unauthorized access or privilege escalation.
A buffer-overflow vulnerability affects MPlayer. The application fails to properly validate the length of user-supplied strings before copying them into static process buffers.
The problem presents itself when the affected application tries to process audio streams that contain overly large values in their header.
An attacker may exploit this issue to execute arbitrary code with the privileges of the user that activated the vulnerable application. This may facilitate unauthorized access or privilege escalation.
Exploit / POC
MPlayer Audio Header Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
MPlayer Audio Header Buffer Overflow Vulnerability
Solution:
Please see the referenced vendor advisories for more information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
MPlayer MPlayer 1.0pre7try2
MPlayer MPlayer 1.0 pre3
MPlayer MPlayer 1.0 pre5
MPlayer MPlayer 1.0 pre6
Solution:
Please see the referenced vendor advisories for more information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
MPlayer MPlayer 1.0pre7try2
-
Conectiva mplayer-1.0pre7try2-73507U10_5cl.i386.rpm
Conectiva 10:
ftp://atualizacoes.conectiva.com.br/10/RPMS/mplayer-1.0pre7try2-73507U 10_5cl.i386.rpm -
Conectiva mplayer-doc-1.0pre7try2-73507U10_5cl.i386.rpm
Conectiva 10:
ftp://atualizacoes.conectiva.com.br/10/RPMS/mplayer-doc-1.0pre7try2-73 507U10_5cl.i386.rpm -
Conectiva mplayer-skins-1.0pre7try2-73507U10_5cl.i386.rpm
Conectiva 10:
ftp://atualizacoes.conectiva.com.br/10/RPMS/mplayer-skins-1.0pre7try2- 73507U10_5cl.i386.rpm
MPlayer MPlayer 1.0 pre3
-
Mandriva lib64postproc0-1.0-0.pre3.14.3.C30mdk.x86_64.rpm
Corporate 3.0/X86_64
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva lib64postproc0-devel-1.0-0.pre3.14.3.C30mdk.x86_64.rpm
Corporate 3.0/X86_64
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva libdha0.1-1.0-0.pre3.14.3.C30mdk.i586.rpm
Corporate 3.0
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva libpostproc0-1.0-0.pre3.14.3.C30mdk.i586.rpm
Corporate 3.0
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva libpostproc0-devel-1.0-0.pre3.14.3.C30mdk.i586.rpm
Corporate 3.0
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mencoder-1.0-0.pre3.14.3.C30mdk.i586.rpm
Corporate 3.0
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mencoder-1.0-0.pre3.14.3.C30mdk.x86_64.rpm
Corporate 3.0/X86_64
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mplayer-1.0-0.pre3.14.3.C30mdk.i586.rpm
Corporate 3.0
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mplayer-1.0-0.pre3.14.3.C30mdk.x86_64.rpm
Corporate 3.0/X86_64
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mplayer-gui-1.0-0.pre3.14.3.C30mdk.i586.rpm
Corporate 3.0
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mplayer-gui-1.0-0.pre3.14.3.C30mdk.x86_64.rpm
Corporate 3.0/X86_64
http://www1.mandrivalinux.com/en/ftp.php3
MPlayer MPlayer 1.0 pre5
-
Mandriva libdha1.0-1.0-0.pre5.8.2.101mdk.i586.rpm
Mandrakelinux 10.1
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva libpostproc0-1.0-0.pre5.8.2.101mdk.i586.rpm
Mandrakelinux 10.1
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva libpostproc0-devel-1.0-0.pre5.8.2.101mdk.i586.rpm
Mandrakelinux 10.1
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mencoder-1.0-0.pre5.8.2.101mdk.i586.rpm
Mandrakelinux 10.1
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mplayer-1.0-0.pre5.8.2.101mdk.i586.rpm
Mandrakelinux 10.1
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mplayer-gui-1.0-0.pre5.8.2.101mdk.i586.rpm
Mandrakelinux 10.1
http://www1.mandrivalinux.com/en/ftp.php3
MPlayer MPlayer 1.0 pre6
-
Mandriva lib64postproc0-1.0-0.pre6.8.2.102mdk.x86_64.rpm
Mandrakelinux 10.2/X86_64
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva lib64postproc0-devel-1.0-0.pre6.8.2.102mdk.x86_64.rpm
Mandrakelinux 10.2/X86_64
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva libdha1.0-1.0-0.pre6.8.2.102mdk.i586.rpm
Mandrakelinux 10.2
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva libpostproc0-1.0-0.pre6.8.2.102mdk.i586.rpm
Mandrakelinux 10.2
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva libpostproc0-devel-1.0-0.pre6.8.2.102mdk.i586.rpm
Mandrakelinux 10.2
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mencoder-1.0-0.pre6.8.2.102mdk.i586.rpm
Mandrakelinux 10.2
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mencoder-1.0-0.pre6.8.2.102mdk.x86_64.rpm
Mandrakelinux 10.2/X86_64
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mplayer-1.0-0.pre6.8.2.102mdk.i586.rpm
Mandrakelinux 10.2
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mplayer-1.0-0.pre6.8.2.102mdk.x86_64.rpm
Mandrakelinux 10.2/X86_64
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva mplayer-gui-1.0-0.pre6.8.2.102mdk.i586.rpm
Mandrakelinux 10.2
http://www1.mandrivalinux.com/en/ftp.php3
References
MPlayer Audio Header Buffer Overflow Vulnerability
References:
References:
- Advisory: mplayer buffer overflow (sven tantau
) - MPlayer Homepage (MPlayer)