Integer overflow nella funzione real_setup_and_get_header in real.c per Unix MPlayer 1.0pre5 consente agli aggressori remoti di causare un denial of service (crash dell’applicazione) ed eventualmente eseguire codice arbitrario attraverso un file multimediale in streaming RTSP reale con un -1 campo Content-Length, che porta ad un buffer overflow heap. |
http://www1.mplayerhq.hu/MPlayer/patches/rtsp_fix_20041215.diff http://www1.mplayerhq.hu/MPlayer/releases/ChangeLog http://www.idefense.com/application/poi/display?id=166 http://www.mandriva.com/security/advisories?name=MDKSA-2004:157 https://exchange.xforce.ibmcloud.com/vulnerabilities/18525 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1311 |
Vulnerabilità: CVE-2004-1311
