Integer overflow in the 4xm demuxer (demuxers/demux_4xm.c) in xine-lib 1.1.16.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a 4X movie file with a large current_track value, a similar issue to CVE-2009-0385.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Xine-lib | Xine | 1.1.16.1 (including) | 1.1.16.1 (including) |
Xine-lib | Ubuntu | dapper | * |
Xine-lib | Ubuntu | gutsy | * |
Xine-lib | Ubuntu | hardy | * |
Xine-lib | Ubuntu | intrepid | * |