Vulnerability index

Browse CVEs

33 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Xine Lib MEDIUM 5.0
CVE-2009-1274EPSS 5%

Integer overflow in the qt_error parse_trak_atom function in demuxers/demux_qt.c in xine-lib 1.1.16.2 and earlier allows remote attackers to execute …

No fix yet
Fix from $1,600 2009-04-08
Xine Lib HIGH 7.5
CVE-2009-0698

Integer overflow in the 4xm demuxer (demuxers/demux_4xm.c) in xine-lib 1.1.16.1 allows remote attackers to cause a denial of service (crash) and poss…

Patch available
Fix from $1,950 2009-02-23
Xine HIGH 10.0
CVE-2008-5237EPSS 6%

Multiple integer overflows in xine-lib 1.1.12, and other 1.1.15 and earlier versions, allow remote attackers to cause a denial of service (crash) or …

Fix: after 1.1.5
Fix from $1,950 2008-11-26
Xine Lib HIGH 10.0
CVE-2008-5244

Unspecified vulnerability in xine-lib before 1.1.15 has unknown impact and attack vectors related to libfaad. NOTE: due to the lack of details, it i…

Fix: after 1.1.15
Fix from $1,950 2008-11-26
Xine Lib HIGH 9.3
CVE-2008-5234EPSS 6%

Multiple heap-based buffer overflows in xine-lib 1.1.12, and other versions before 1.1.15, allow remote attackers to execute arbitrary code via vecto…

Fix: after 1.1.14
Fix from $1,950 2008-11-26
Xine HIGH 9.3
CVE-2008-5235

Heap-based buffer overflow in the demux_real_send_chunk function in src/demuxers/demux_real.c in xine-lib before 1.1.15 allows remote attackers to ex…

Fix: after 1.1.4
Fix from $1,950 2008-11-26
Xine HIGH 9.3
CVE-2008-5236EPSS 6%

Multiple heap-based buffer overflows in xine-lib 1.1.12, and other 1.1.15 and earlier versions, allow remote attackers to execute arbitrary code via …

Fix: after 1.1.5
Fix from $1,950 2008-11-26
Xine Lib HIGH 9.3
CVE-2008-5245

xine-lib before 1.1.15 performs V4L video frame preallocation before ascertaining the required length, which has unknown impact and attack vectors, p…

Fix: after 1.1.14
Fix from $1,950 2008-11-26
Xine Lib HIGH 9.3
CVE-2008-5246EPSS 6%

Multiple heap-based buffer overflows in xine-lib before 1.1.15 allow remote attackers to execute arbitrary code via vectors that send ID3 data to the…

Fix: after 1.1.14
Fix from $1,950 2008-11-26
Xine HIGH 7.1
CVE-2008-5238

Integer overflow in the real_parse_mdpr function in demux_real.c in xine-lib 1.1.12, and other versions before 1.1.15, allows remote attackers to cau…

Fix: after 1.1.14
Fix from $1,950 2008-11-26
Xine Lib MEDIUM 6.8
CVE-2008-5242

demux_qt.c in xine-lib 1.1.12, and other 1.1.15 and earlier versions, does not validate the count field before calling calloc for STSD_ATOM atom allo…

Fix: after 1.1.15
Fix from $1,600 2008-11-26
Xine Lib HIGH 7.5
CVE-2008-1878EPSS 15%

Stack-based buffer overflow in the demux_nsf_send_chunk function in src/demuxers/demux_nsf.c in xine-lib 1.1.12 and earlier allows remote attackers t…

Fix: after 1.1.12
Fix from $1,950 2008-04-17
Xine Lib HIGH 9.3
CVE-2008-1686EPSS 6%

Array index vulnerability in Speex 1.1.12 and earlier, as used in libfishsound 0.9.0 and earlier, including Illiminable DirectShow Filters and Annode…

Fix: after 1.1.12
Fix from $1,950 2008-04-08
Xine Lib MEDIUM 6.8
CVE-2008-0073EPSS 9%

Array index error in the sdpplin_parse function in input/libreal/sdpplin.c in xine-lib 1.1.10.1 allows remote RTSP servers to execute arbitrary code …

Patch available
Fix from $1,600 2008-03-24
Xine Lib MEDIUM 6.8
CVE-2008-1482EPSS 10%

Multiple integer overflows in xine-lib 1.1.11 and earlier allow remote attackers to trigger heap-based buffer overflows and possibly execute arbitrar…

No fix yet
Fix from $1,600 2008-03-24
Xine Lib MEDIUM 6.8
CVE-2008-1110EPSS 10%

Buffer overflow in demuxers/demux_asf.c (aka the ASF demuxer) in the xineplug_dmx_asf.so plugin in xine-lib before 1.1.10 allows remote attackers to …

Fix: after 1.1.9
Fix from $1,600 2008-02-29
Xine Lib HIGH 7.5
CVE-2008-0238

Multiple heap-based buffer overflows in the rmff_dump_cont function in input/libreal/rmff.c in xine-lib 1.1.9 allow remote attackers to execute arbit…

Fix: after 1.1.9
Fix from $1,950 2008-01-11
Xine Lib MEDIUM 6.4
CVE-2008-0225EPSS 15%

Heap-based buffer overflow in the rmff_dump_cont function in input/libreal/rmff.c in xine-lib 1.1.9 and earlier allows remote attackers to execute ar…

Fix: after 1.1.9
Fix from $1,600 2008-01-10
Xine Ui HIGH 10.0
CVE-2007-0254

Format string vulnerability in the errors_create_window function in errors.c in xine-ui allows attackers to execute arbitrary code via unknown vector…

Mitigation only
Fix from $1,950 2007-01-16
Xine HIGH 9.3
CVE-2007-0255

XINE 0.99.4 allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a certain …

Mitigation only
Fix from $1,950 2007-01-16
Xine Lib HIGH 7.5
CVE-2006-4799

Buffer overflow in ffmpeg for xine-lib before 1.1.2 might allow context-dependent attackers to execute arbitrary code via a crafted AVI file and "bad…

Fix: after 1.1.1
Fix from $1,950 2006-09-14
Gxine MEDIUM 5.0
CVE-2006-2802EPSS 11%

Buffer overflow in the HTTP Plugin (xineplug_inp_http.so) for xine-lib 1.1.1 allows remote attackers to cause a denial of service (application crash)…

No fix yet
Fix from $1,600 2006-06-03
Xine MEDIUM 5.0
CVE-2006-2230EPSS 7%

Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine 0.99.4 might allow attackers to cause a denial of service via format string spec…

Mitigation only
Fix from $1,600 2006-05-05
Xine HIGH 7.5
CVE-2006-1905EPSS 14%

Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine 0.99.3 allow remote attackers to execute arbitrary code via format string specif…

No fix yet
Fix from $1,950 2006-04-20
Xine Lib HIGH 7.5
CVE-2006-1664EPSS 15%

Buffer overflow in xine_list_delete_current in libxine 1.14 and earlier, as distributed in xine-lib 1.1.1 and earlier, allows remote attackers to exe…

No fix yet
Fix from $1,950 2006-04-07
Xine Lib HIGH 7.5
CVE-2005-2967EPSS 10%

Format string vulnerability in input_cdda.c in xine-lib 1-beta through 1-beta 3, 1-rc, 1.0 through 1.0.2, and 1.1.1 allows remote servers to execute …

Patch available
Fix from $1,950 2005-10-14
Gxine HIGH 7.5
CVE-2005-1692

Format string vulnerability in gxine 0.4.1 through 0.4.4, and other versions down to 0.3, allows remote attackers to execute arbitrary code via a ram…

Mitigation only
Fix from $1,950 2005-05-24
Xine Lib HIGH 10.0
CVE-2004-1300EPSS 9%

Buffer overflow in the open_aiff_file function in demux_aiff.c for xine-lib (libxine) 1-rc7 allows remote attackers to execute arbitrary code via a c…

No fix yet
Fix from $1,950 2005-01-10
Xine Lib MEDIUM 5.1
CVE-2004-1455

Stack-based buffer overflow in Xine-lib-rc5 in xine-lib 1_rc5-r2 and earlier allows remote attackers to execute arbitrary code via crafted playlists …

Patch available
Fix from $1,600 2004-12-31
Xine MEDIUM 5.1
CVE-2004-1475EPSS 8%

Multiple stack-based buffer overflows in xine-lib 1-rc2 through 1-rc5 allow attackers to execute arbitrary code via (1) long VideoCD vcd:// MRLs or (…

Patch available
Fix from $1,600 2004-12-31