CVE Vulnerabilities

CVE-2007-0255

Published: Jan 16, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

XINE 0.99.4 allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a certain M3U file that contains a long #EXTINF line and contains format string specifiers in an invalid udp:// URI, possibly a variant of CVE-2007-0017.

Affected Software

NameVendorStart VersionEnd Version
XineXine0.99.4 (including)0.99.4 (including)
Xine-uiUbuntuartful*
Xine-uiUbuntubionic*
Xine-uiUbuntucosmic*
Xine-uiUbuntudapper*
Xine-uiUbuntudevel*
Xine-uiUbuntudisco*
Xine-uiUbuntuedgy*
Xine-uiUbuntueoan*
Xine-uiUbuntuesm-apps/bionic*
Xine-uiUbuntuesm-apps/focal*
Xine-uiUbuntuesm-apps/jammy*
Xine-uiUbuntuesm-apps/noble*
Xine-uiUbuntuesm-apps/xenial*
Xine-uiUbuntufeisty*
Xine-uiUbuntufocal*
Xine-uiUbuntugroovy*
Xine-uiUbuntugutsy*
Xine-uiUbuntuhardy*
Xine-uiUbuntuhirsute*
Xine-uiUbuntuimpish*
Xine-uiUbuntuintrepid*
Xine-uiUbuntujammy*
Xine-uiUbuntujaunty*
Xine-uiUbuntukarmic*
Xine-uiUbuntukinetic*
Xine-uiUbuntulucid*
Xine-uiUbuntulunar*
Xine-uiUbuntumantic*
Xine-uiUbuntumaverick*
Xine-uiUbuntunatty*
Xine-uiUbuntunoble*
Xine-uiUbuntuoneiric*
Xine-uiUbuntuoracular*
Xine-uiUbuntuplucky*
Xine-uiUbuntuprecise*
Xine-uiUbuntuquantal*
Xine-uiUbuntuquesting*
Xine-uiUbunturaring*
Xine-uiUbuntusaucy*
Xine-uiUbuntutrusty*
Xine-uiUbuntuutopic*
Xine-uiUbuntuvivid*
Xine-uiUbuntuwily*
Xine-uiUbuntuxenial*
Xine-uiUbuntuyakkety*
Xine-uiUbuntuzesty*

References