Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2004-0433

Multiple buffer overflows in the Real-Time Streaming Protocol (RTSP) client for (1) MPlayer before 1.0pre4 and (2) xine lib (xine-lib) before 1-rc4, when playing Real RTSP (realrtsp) streams, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (a) long URLs, (b) long Real server responses, or (c) long Real Data Transport (RDT) packets.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.031
EPSS Ranking 86.1%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2004-0433
  • Mplayer » Mplayer » Version: 1.0_pre3try2
    cpe:2.3:a:mplayer:mplayer:1.0_pre3try2
  • Xine » Xine-Lib » Version: 1_beta1
    cpe:2.3:a:xine:xine-lib:1_beta1
  • Xine » Xine-Lib » Version: 1_beta10
    cpe:2.3:a:xine:xine-lib:1_beta10
  • Xine » Xine-Lib » Version: 1_beta11
    cpe:2.3:a:xine:xine-lib:1_beta11
  • Xine » Xine-Lib » Version: 1_beta2
    cpe:2.3:a:xine:xine-lib:1_beta2
  • Xine » Xine-Lib » Version: 1_beta3
    cpe:2.3:a:xine:xine-lib:1_beta3
  • Xine » Xine-Lib » Version: 1_beta4
    cpe:2.3:a:xine:xine-lib:1_beta4
  • Xine » Xine-Lib » Version: 1_beta5
    cpe:2.3:a:xine:xine-lib:1_beta5
  • Xine » Xine-Lib » Version: 1_beta6
    cpe:2.3:a:xine:xine-lib:1_beta6
  • Xine » Xine-Lib » Version: 1_beta7
    cpe:2.3:a:xine:xine-lib:1_beta7
  • Xine » Xine-Lib » Version: 1_beta8
    cpe:2.3:a:xine:xine-lib:1_beta8
  • Xine » Xine-Lib » Version: 1_beta9
    cpe:2.3:a:xine:xine-lib:1_beta9
  • Xine » Xine-Lib » Version: 1_rc2
    cpe:2.3:a:xine:xine-lib:1_rc2
  • Xine » Xine-Lib » Version: 1_rc3a
    cpe:2.3:a:xine:xine-lib:1_rc3a
  • Xine » Xine-Lib » Version: 1_rc3b
    cpe:2.3:a:xine:xine-lib:1_rc3b
  • Xine » Xine-Lib » Version: 1_rc3c
    cpe:2.3:a:xine:xine-lib:1_rc3c


Contact Us

Shodan ® - All rights reserved