Multiple integer overflows in xine-lib 1.1.12, and other 1.1.15 and earlier versions, allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via (1) crafted width and height values that are not validated by the mymng_process_header function in demux_mng.c before use in an allocation calculation or (2) crafted current_atom_size and string_size values processed by the parse_reference_atom function in demux_qt.c for an RDRF_ATOM string.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Gentoo Linux | — | Upgrade media-libs/xine-lib. | Oct 30, 2017 | Nov 25, 2008 |
| Suse | — | Upgrade libxine-develUpgrade libxine1-pulseUpgrade libxine1-gnome-vfsUpgrade libxine1-32bitUpgrade libxine1 | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade libxine-main1Upgrade libxine1 | Nov 8, 2024 | Nov 26, 2008 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub