CVE Vulnerabilities

CVE-2007-0255

Published: Jan 16, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

XINE 0.99.4 allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a certain M3U file that contains a long #EXTINF line and contains format string specifiers in an invalid udp:// URI, possibly a variant of CVE-2007-0017.

Affected Software

Name Vendor Start Version End Version
Xine Xine 0.99.4 (including) 0.99.4 (including)
Xine-ui Ubuntu artful *
Xine-ui Ubuntu bionic *
Xine-ui Ubuntu cosmic *
Xine-ui Ubuntu dapper *
Xine-ui Ubuntu devel *
Xine-ui Ubuntu disco *
Xine-ui Ubuntu edgy *
Xine-ui Ubuntu eoan *
Xine-ui Ubuntu esm-apps/bionic *
Xine-ui Ubuntu esm-apps/focal *
Xine-ui Ubuntu esm-apps/jammy *
Xine-ui Ubuntu esm-apps/noble *
Xine-ui Ubuntu esm-apps/xenial *
Xine-ui Ubuntu feisty *
Xine-ui Ubuntu focal *
Xine-ui Ubuntu groovy *
Xine-ui Ubuntu gutsy *
Xine-ui Ubuntu hardy *
Xine-ui Ubuntu hirsute *
Xine-ui Ubuntu impish *
Xine-ui Ubuntu intrepid *
Xine-ui Ubuntu jammy *
Xine-ui Ubuntu jaunty *
Xine-ui Ubuntu karmic *
Xine-ui Ubuntu kinetic *
Xine-ui Ubuntu lucid *
Xine-ui Ubuntu lunar *
Xine-ui Ubuntu mantic *
Xine-ui Ubuntu maverick *
Xine-ui Ubuntu natty *
Xine-ui Ubuntu noble *
Xine-ui Ubuntu oneiric *
Xine-ui Ubuntu oracular *
Xine-ui Ubuntu precise *
Xine-ui Ubuntu quantal *
Xine-ui Ubuntu raring *
Xine-ui Ubuntu saucy *
Xine-ui Ubuntu trusty *
Xine-ui Ubuntu utopic *
Xine-ui Ubuntu vivid *
Xine-ui Ubuntu wily *
Xine-ui Ubuntu xenial *
Xine-ui Ubuntu yakkety *
Xine-ui Ubuntu zesty *

References