Vulnerability index

Browse CVEs

25 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Mplayer HIGH 10.0
CVE-2008-5616EPSS 8%

Stack-based buffer overflow in the demux_open_vqf function in libmpdemux/demux_vqf.c in MPlayer 1.0 rc2 before r28150 allows remote attackers to exec…

Fix: after 1.0_rc1
Fix from $1,950 2008-12-17
Mplayer MEDIUM 5.0
CVE-2008-4610EPSS 9%

MPlayer allows remote attackers to cause a denial of service (application crash) via (1) a malformed AAC file, as demonstrated by lol-vlc.aac; or (2)…

Fix: after 1.0_rc1
Fix from $1,600 2008-10-20
Mplayer HIGH 9.3
CVE-2008-3827EPSS 11%

Multiple integer underflows in the Real demuxer (demux_real.c) in MPlayer 1.0_rc2 and earlier allow remote attackers to cause a denial of service (pr…

Fix: after 1.0_rc2
Fix from $1,950 2008-09-29
Mplayer HIGH 10.0
CVE-2008-1558EPSS 17%

Uncontrolled array index in the sdpplin_parse function in stream/realrtsp/sdpplin.c in MPlayer 1.0 rc2 allows remote attackers to overwrite memory an…

No fix yet
Fix from $1,950 2008-03-31
Mplayer MEDIUM 6.8
CVE-2008-0630

Buffer overflow in url.c in MPlayer 1.0rc2 and SVN before r25823 allows remote attackers to execute arbitrary code via a crafted URL that prevents th…

Mitigation only
Fix from $1,600 2008-02-06
Mplayer HIGH 9.3
CVE-2008-0485EPSS 9%

Array index error in libmpdemux/demux_mov.c in MPlayer 1.0 rc2 and earlier might allow remote attackers to execute arbitrary code via a QuickTime MOV…

Fix: after 1.02rc2
Fix from $1,950 2008-02-05
Mplayer HIGH 7.5
CVE-2008-0486EPSS 5%

Array index vulnerability in libmpdemux/demux_audio.c in MPlayer 1.0rc2 and SVN before r25917, and possibly earlier versions, as used in Xine-lib 1.1…

No fix yet
Fix from $1,950 2008-02-05
Mplayer HIGH 7.6
CVE-2007-4938EPSS 16%

Heap-based buffer overflow in libmpdemux/aviheader.c in MPlayer 1.0rc1 and earlier allows remote attackers to cause a denial of service (application …

No fix yet
Fix from $1,950 2007-09-18
Mplayer HIGH 9.3
CVE-2007-2948EPSS 6%

Multiple stack-based buffer overflows in stream/stream_cddb.c in MPlayer before 1.0rc1try3 allow remote attackers to execute arbitrary code via a CDD…

Patch available
Fix from $1,950 2007-06-07
Mplayer MEDIUM 6.8
CVE-2007-1387

The DirectShow loader (loader/dshow/DS_VideoDecoder.c) in MPlayer 1.0rc1 and earlier, as used in xine-lib, does not set the biSize before use in a me…

Fix: after 1.0_rc1
Fix from $1,600 2007-03-13
Mplayer HIGH 7.6
CVE-2007-1246EPSS 6%

The DMO_VideoDecoder_Open function in loader/dmo/DMO_VideoDecoder.c in MPlayer 1.0rc1 and earlier, as used in xine-lib, does not set the biSize befor…

Fix: after 1.0_rc1
Fix from $1,950 2007-03-03
Mplayer HIGH 7.5
CVE-2006-6172EPSS 5%

Buffer overflow in the asmrp_eval function in the RealMedia RTSP stream handler (asmrp.c) for Real Media input plugin, as used in (1) xine/xine-lib, …

Fix: after 1.0_rc1
Fix from $1,950 2006-11-30
Mplayer MEDIUM 5.1
CVE-2006-1502

Multiple integer overflows in MPlayer 1.0pre7try2 allow remote attackers to cause a denial of service and trigger heap-based buffer overflows via (1)…

Fix: after 1.0_pre7try2
Fix from $1,600 2006-03-30
Mplayer HIGH 7.5
CVE-2006-0579

Multiple integer overflows in (1) the new_demux_packet function in demuxer.h and (2) the demux_asf_read_packet function in demux_asf.c in MPlayer 1.0…

Fix: after 1.0_pre7try2
Fix from $1,950 2006-02-08
Mplayer HIGH 7.5
CVE-2005-2718

Buffer overflow in ad_pcm.c in MPlayer 1.0pre7 and earlier allows remote attackers to execute arbitrary code via crafted PCM audio data, as demonstra…

Fix: after 1.0_pre7
Fix from $1,950 2005-08-29
Mplayer HIGH 7.5
CVE-2005-1195

Multiple heap-based buffer overflows in the code used to handle (1) MMS over TCP (MMST) streams or (2) RealMedia RTSP streams in xine-lib before 1.0,…

Fix: after 1.0_pre6
Fix from $1,950 2005-05-02
Mplayer HIGH 10.0
CVE-2004-1187EPSS 5%

Heap-based buffer overflow in the pnm_get_chunk function for xine 0.99.2, and other packages such as MPlayer that use the same code, allows remote at…

Patch available
Fix from $1,950 2005-01-10
Mplayer HIGH 10.0
CVE-2004-1188

The pnm_get_chunk function in xine 0.99.2 and earlier, and other packages such as MPlayer that use the same code, does not properly verify that the c…

Patch available
Fix from $1,950 2005-01-10
Mplayer HIGH 10.0
CVE-2004-1285

Buffer overflow in the get_header function in asf_mmst_streaming.c for MPlayer 1.0pre5 allows remote attackers to execute arbitrary code via a crafte…

No fix yet
Fix from $1,950 2005-01-10
Unix Mplayer HIGH 10.0
CVE-2004-1309EPSS 5%

Heap-based buffer overflow in the demux_open_bmp function in demux_bmp.c for Unix MPlayer 1.0pre5 allows remote attackers to execute arbitrary code v…

Mitigation only
Fix from $1,950 2005-01-10
Mplayer HIGH 10.0
CVE-2004-1310EPSS 5%

Stack-based buffer overflow in the asf_mmst_streaming.c functionality for MPlayer 1.0pre5 allows remote attackers to execute arbitrary code via a lar…

Patch available
Fix from $1,950 2005-01-10
Mplayer HIGH 10.0
CVE-2004-1311EPSS 5%

Integer overflow in the real_setup_and_get_header function in real.c for Unix MPlayer 1.0pre5 allows remote attackers to cause a denial of service (a…

Patch available
Fix from $1,950 2005-01-10
Mplayer HIGH 10.0
CVE-2004-0433EPSS 5%

Multiple buffer overflows in the Real-Time Streaming Protocol (RTSP) client for (1) MPlayer before 1.0pre4 and (2) xine lib (xine-lib) before 1-rc4, …

Mitigation only
Fix from $1,950 2004-08-18
Mplayer HIGH 10.0
CVE-2004-0659EPSS 16%

Buffer overflow in TranslateFilename for common.c in MPlayer 1.0pre4 allows remote attackers to execute arbitrary code via a long file name.

Mitigation only
Fix from $1,950 2004-08-06
Mplayer HIGH 7.5
CVE-2003-0835

Multiple buffer overflows in asf_http_request of MPlayer before 0.92 allows remote attackers to execute arbitrary code via an ASX header with a long …

Mitigation only
Fix from $1,950 2003-11-17