Secunia
|
|

|
|
|
|
|
|
|
|
|
|
|
|
|
| Secunia | Media Player Classic AVI File Processing Buffer Overflow |
|---|---|
|
2nd Mar, 2010 04:52 |
|
Ranking: 0 Posts: 0 User Since: - System Score: - Location: Copenhagen, DK |
Code Audit Labs has discovered a vulnerability in Media Player Classic, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to an input validation error when processing .AVI files and can be exploited to cause a buffer overflow via a .AVI file with a specially crafted "indx" chunk. Successful exploitation allows execution of arbitrary code. The vulnerability is confirmed in version 6.4.9.0. Other versions may also be affected. |
| cyberquotient | RE: Media Player Classic AVI File Processing Buffer Overflow | ||||||||
|
2nd Mar, 2010 04:52 | ||||||||
| Score: -2 Posts: 11 User Since: 24th Feb 2010 System Score: N/A Location: US Last edited on 2nd Mar, 2010 04:53 |
There is a later version of Media Player Classic than the one identified in this vulnerability - 6.4.9.1. The latest version of QuickTime Alternative (3.1.1) bundles that version. Is this vulnerability confirmed there? | ||||||||
|
|||||||||
| M.Hansen | RE: Media Player Classic AVI File Processing Buffer Overflow |
|
2nd Mar, 2010 08:27 |
| Score: 188 Posts: 376 User Since: 26th Jan 2009 System Score: N/A Location: Copenhagen, DK |
Hi The original creators of Media Player Classic has disbanded the project and Media Player Classic is now End-Of-Life. There is however a new project based on Media Player Classic called Media Player Classic Home Cinema which is still supported. |
| RE: Media Player Classic AVI File Processing Buffer Overflow | [+] |
|
| This reply has been minimised due to a negative Relevancy Score. | ||
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |