Integer signedness error in DivX Web Player 1.4.2.7, and possibly earlier versions, allows remote attackers to execute arbitrary code via a DivX file containing a crafted Stream Format (STRF) chunk, which triggers a heap-based buffer overflow.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Divx_web_player | Divx | * | 1.4.2.7 (including) |
Divx_web_player | Divx | 1.0.1 (including) | 1.0.1 (including) |
Divx_web_player | Divx | 1.0.2 (including) | 1.0.2 (including) |
Divx_web_player | Divx | 1.1 (including) | 1.1 (including) |
Divx_web_player | Divx | 1.1.0 (including) | 1.1.0 (including) |
Divx_web_player | Divx | 1.2 (including) | 1.2 (including) |
Divx_web_player | Divx | 1.2.0 (including) | 1.2.0 (including) |
Divx_web_player | Divx | 1.3 (including) | 1.3 (including) |
Divx_web_player | Divx | 1.3.0 (including) | 1.3.0 (including) |
Divx_web_player | Divx | 1.3.1 (including) | 1.3.1 (including) |
Divx_web_player | Divx | 1.4 (including) | 1.4 (including) |
Divx_web_player | Divx | 1.4.0-beta2 (including) | 1.4.0-beta2 (including) |
Divx_web_player | Divx | 1.4.1-beta1 (including) | 1.4.1-beta1 (including) |
Divx_web_player | Divx | 1.4.2-beta2 (including) | 1.4.2-beta2 (including) |