MPlayer, possibly 1.0rc1, allows remote attackers to cause a denial of service (SIGSEGV and application crash) via (1) a malformed MP3 file, as demonstrated by lol-mplayer.mp3; (2) a malformed Ogg Vorbis file, as demonstrated by lol-mplayer.ogg; (3) a malformed MPEG-1 file, as demonstrated by lol-mplayer.mpg; (4) a malformed MPEG-2 file, as demonstrated by lol-mplayer.m2v; (5) a malformed MPEG-4 AVI file, as demonstrated by lol-mplayer.avi; (6) a malformed FLAC file, as demonstrated by lol-mplayer.flac; (7) a malformed Ogg Theora file, as demonstrated by lol-mplayer.ogm; (8) a malformed WMV file, as demonstrated by lol-mplayer.wmv; or (9) a malformed AAC file, as demonstrated by lol-mplayer.aac. NOTE: vector 5 might overlap CVE-2007-4938, and vector 6 might overlap CVE-2008-0486.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mplayer | Mplayer | * | 1.0_rc1 (including) |
Mplayer | Mplayer | 0.90 (including) | 0.90 (including) |
Mplayer | Mplayer | 0.90_pre (including) | 0.90_pre (including) |
Mplayer | Mplayer | 0.90_rc (including) | 0.90_rc (including) |
Mplayer | Mplayer | 0.90_rc4 (including) | 0.90_rc4 (including) |
Mplayer | Mplayer | 0.91 (including) | 0.91 (including) |
Mplayer | Mplayer | 0.92 (including) | 0.92 (including) |
Mplayer | Mplayer | 0.92.1 (including) | 0.92.1 (including) |
Mplayer | Mplayer | 0.92_cvs (including) | 0.92_cvs (including) |
Mplayer | Mplayer | 1.0_pre1 (including) | 1.0_pre1 (including) |
Mplayer | Mplayer | 1.0_pre2 (including) | 1.0_pre2 (including) |
Mplayer | Mplayer | 1.0_pre3 (including) | 1.0_pre3 (including) |
Mplayer | Mplayer | 1.0_pre3try2 (including) | 1.0_pre3try2 (including) |
Mplayer | Mplayer | 1.0_pre4 (including) | 1.0_pre4 (including) |
Mplayer | Mplayer | 1.0_pre5 (including) | 1.0_pre5 (including) |
Mplayer | Mplayer | 1.0_pre5try1 (including) | 1.0_pre5try1 (including) |
Mplayer | Mplayer | 1.0_pre5try2 (including) | 1.0_pre5try2 (including) |
Mplayer | Mplayer | 1.0_pre6 (including) | 1.0_pre6 (including) |
Mplayer | Mplayer | 1.0_pre7 (including) | 1.0_pre7 (including) |
Mplayer | Mplayer | 1.0_pre7try2 (including) | 1.0_pre7try2 (including) |
Mplayer | Ubuntu | dapper | * |
Mplayer | Ubuntu | gutsy | * |
Mplayer | Ubuntu | hardy | * |
Mplayer | Ubuntu | intrepid | * |
Mplayer | Ubuntu | jaunty | * |
Mplayer | Ubuntu | karmic | * |
Mplayer | Ubuntu | lucid | * |
Mplayer | Ubuntu | maverick | * |
Mplayer | Ubuntu | natty | * |
Mplayer | Ubuntu | oneiric | * |
Mplayer | Ubuntu | quantal | * |
Mplayer | Ubuntu | raring | * |
Mplayer | Ubuntu | saucy | * |
Mplayer | Ubuntu | upstream | * |