Uncontrolled array index in the sdpplin_parse function in stream/realrtsp/sdpplin.c in MPlayer 1.0 rc2 allows remote attackers to overwrite memory and execute arbitrary code via a large streamid SDP parameter. NOTE: this issue has been referred to as an integer overflow.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mplayer | Mplayer | 1.0_rc2 (including) | 1.0_rc2 (including) |
Mplayer | Ubuntu | dapper | * |
Mplayer | Ubuntu | edgy | * |
Mplayer | Ubuntu | feisty | * |
Mplayer | Ubuntu | gutsy | * |
Mplayer | Ubuntu | hardy | * |
Mplayer | Ubuntu | upstream | * |