Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-0486

Array index vulnerability in libmpdemux/demux_audio.c in MPlayer 1.0rc2 and SVN before r25917, and possibly earlier versions, as used in Xine-lib 1.1.10, might allow remote attackers to execute arbitrary code via a crafted FLAC tag, which triggers a buffer overflow.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.046
EPSS Ranking 88.6%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2008-0486
  • Mplayer » Mplayer » Version: 1.02rc2
    cpe:2.3:a:mplayer:mplayer:1.02rc2
  • Xine » Xine-Lib » Version: 1.1.10
    cpe:2.3:a:xine:xine-lib:1.1.10


Contact Us

Shodan ® - All rights reserved