iDEFENSE Security Advisory 2004-12-16.2...

- AV AC AU C I A
发布: 2004-12-30
修订: 2025-04-13

iDEFENSE Security Advisory 12.16.2004-2 - Remote exploitation of a heap overflow vulnerability in Unix MPlayer could allow attackers to gain access to the computer. The vulnerability specifically exists due to a lack of bounds checking within the demux_open_bmp() routine defined in /libmpdemux/demux_bmp.c. If a specially crafted file specifies a large value for the biClrUsed field, an overflow is triggered in stream_read().

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息