Format string vulnerability in gxine 0.4.1 through 0.4.4, and other versions down to 0.3, allows remote attackers to execute arbitrary code via a ram file with a URL whose hostname contains format string specifiers.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gxine | Xine | 0.41 | 0.41 |
Gxine | Xine | 0.42 | 0.42 |
Gxine | Xine | 0.43 | 0.43 |
Gxine | Xine | 0.44 | 0.44 |
Gxine | Ubuntu | dapper | * |
Gxine | Ubuntu | devel | * |
Gxine | Ubuntu | edgy | * |
Gxine | Ubuntu | feisty | * |