CVE Vulnerabilities

CVE-2008-1558

Published: Mar 31, 2008 | Modified: Sep 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Uncontrolled array index in the sdpplin_parse function in stream/realrtsp/sdpplin.c in MPlayer 1.0 rc2 allows remote attackers to overwrite memory and execute arbitrary code via a large streamid SDP parameter. NOTE: this issue has been referred to as an integer overflow.

Affected Software

Name Vendor Start Version End Version
Mplayer Mplayer 1.0_rc2 (including) 1.0_rc2 (including)
Mplayer Ubuntu dapper *
Mplayer Ubuntu edgy *
Mplayer Ubuntu feisty *
Mplayer Ubuntu gutsy *
Mplayer Ubuntu hardy *
Mplayer Ubuntu upstream *

References