CVE Vulnerabilities

CVE-2008-5238

Published: Nov 26, 2008 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.1 HIGH
AV:N/AC:M/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Integer overflow in the real_parse_mdpr function in demux_real.c in xine-lib 1.1.12, and other versions before 1.1.15, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted stream_name_size field.

Affected Software

Name Vendor Start Version End Version
Xine Xine * 1.1.14 (including)
Xine Xine 0.9.13 (including) 0.9.13 (including)
Xine Xine 1-beta1 (including) 1-beta1 (including)
Xine Xine 1-beta10 (including) 1-beta10 (including)
Xine Xine 1-beta11 (including) 1-beta11 (including)
Xine Xine 1-beta12 (including) 1-beta12 (including)
Xine Xine 1-beta2 (including) 1-beta2 (including)
Xine Xine 1-beta3 (including) 1-beta3 (including)
Xine Xine 1-beta4 (including) 1-beta4 (including)
Xine Xine 1-beta5 (including) 1-beta5 (including)
Xine Xine 1-beta6 (including) 1-beta6 (including)
Xine Xine 1-beta7 (including) 1-beta7 (including)
Xine Xine 1-beta8 (including) 1-beta8 (including)
Xine Xine 1-beta9 (including) 1-beta9 (including)
Xine Xine 1-rc0a (including) 1-rc0a (including)
Xine Xine 1-rc1 (including) 1-rc1 (including)
Xine Xine 1-rc2 (including) 1-rc2 (including)
Xine Xine 1-rc3 (including) 1-rc3 (including)
Xine Xine 1-rc3a (including) 1-rc3a (including)
Xine Xine 1-rc3b (including) 1-rc3b (including)
Xine Xine 1-rc3c (including) 1-rc3c (including)
Xine Xine 1-rc4 (including) 1-rc4 (including)
Xine Xine 1-rc4a (including) 1-rc4a (including)
Xine Xine 1-rc5 (including) 1-rc5 (including)
Xine Xine 1-rc6a (including) 1-rc6a (including)
Xine Xine 1-rc7 (including) 1-rc7 (including)
Xine Xine 1-rc8 (including) 1-rc8 (including)
Xine Xine 1.0 (including) 1.0 (including)
Xine Xine 1.0.1 (including) 1.0.1 (including)
Xine Xine 1.0.2 (including) 1.0.2 (including)
Xine Xine 1.0.3a (including) 1.0.3a (including)
Xine Xine 1.1.0 (including) 1.1.0 (including)
Xine Xine 1.1.1 (including) 1.1.1 (including)
Xine Xine 1.1.2 (including) 1.1.2 (including)
Xine Xine 1.1.3 (including) 1.1.3 (including)
Xine Xine 1.1.4 (including) 1.1.4 (including)
Xine Xine 1.1.10.1 (including) 1.1.10.1 (including)
Xine Xine 1.1.11 (including) 1.1.11 (including)
Xine Xine 1.1.11.1 (including) 1.1.11.1 (including)
Xine-lib Ubuntu dapper *
Xine-lib Ubuntu gutsy *
Xine-lib Ubuntu hardy *
Xine-lib Ubuntu upstream *

References