[xine-lib] [CVE-2008-1482] multiple integer overflows in xine-lib 1.1.11 and earlier

Bug #210229 reported by disabled.user
254
Affects Status Importance Assigned to Milestone
xine-lib (Ubuntu)
Invalid
Undecided
Jamie Strandboge
Nominated for Dapper by disabled.user
Nominated for Feisty by disabled.user
Nominated for Gutsy by disabled.user

Bug Description

This bug report is intended for the stable releases. For Hardy, this seems to have been fixed, see Bug#204557.

Quoting CVE-2008-1482:
"Multiple integer overflows in xine-lib 1.1.11 and earlier allow remote attackers to trigger heap-based buffer overflows and possibly execute arbitrary code via (1) a crafted .FLV file, which triggers an overflow in demuxers/demux_flv.c; (2) a crafted .MOV file, which triggers an overflow in demuxers/demux_qt.c; (3) a crafted .RM file, which triggers an overflow in demuxers/demux_real.c; (4) a crafted .MVE file, which triggers an overflow in demuxers/demux_wc3movie.c; (5) a crafted .MKV file, which triggers an overflow in demuxers/ebml.c; or (6) a crafted .CAK file, which triggers an overflow in demuxers/demux_film.c."

CVE References

Revision history for this message
Jamie Strandboge (jdstrand) wrote :

Thank you for taking the time to report this bug and helping to make Ubuntu better. This particular bug has already been reported and is a duplicate of bug 195700, so it is being marked as such. Please look at the other bug report to see if there is any missing information that you can provide, or to see if there is a workaround for the bug. Additionally, any further discussion regarding the bug should occur in the other report. Feel free to continue to report any other bugs you may find.

Changed in xine-lib:
assignee: nobody → jdstrand
status: New → Invalid
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.