|
|

CVE Reference: CVE-2008-1110 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2008-1110 |
|
|
Description: Buffer overflow in demuxers/demux_asf.c (aka the ASF demuxer) in the xineplug_dmx_asf.so plugin in xine-lib before 1.1.10 allows remote attackers to execute arbitrary code or cause a denial of service (crash) via a crafted ASF header. NOTE: this issue leads to a crash when an attack uses the CVE-2006-1664 exploit code, but it is different from CVE-2006-1664. |
|
|
CVE Status: Candidate |
|
|
References: XF http://xforce.iss.net/xforce/xfdb/41019 UBUNTU http://www.ubuntu.com/usn/usn-635-1 SAID Secunia Advisory: SA29141 Secunia Advisory: SA31393 MILW0RM http://www.milw0rm.com/exploits/1641 MANDRIVA http://www.mandriva.com/security/advisories?name=MDVSA-2008:178 GENTOO http://security.gentoo.org/glsa/glsa-200802-12.xml CONFIRM http://xinehq.de/index.php/security http://xinehq.de/index.php/news http://sourceforge.net/project/shownotes.php?group_id=9655&release_id=571608 http://hg.debian.org/hg/xine-lib/xine-lib?cmd=changeset;node=fb6d089b520dca199ef16a046da28c50c984c2d2;style=gitweb http://bugs.gentoo.org/show_bug.cgi?id=208100 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |