|
Mandriva- Advisories MDKSA-2007:061: Updated mplayer packages to address buffer overflow vulnerability
Advisories MDKSA-2007:061: Updated mplayer packages to address buffer overflow vulnerability
The DS_VideoDecoder_Open function in loader/dshow/DS_VideoDecoder.c in MPlayer 1.0rc1 and earlier does not set the biSize before use in a memcpy, which allows user-assisted remote attackers to cause a buffer overflow and possibly execute arbitrary code. Updated packages have been patched to address this issue.
http://mandrivausers.org/index.php?showtopic=40135
Array
Tue, 13 Mar 2007 19:19:28 +0000
|