Vulnerability Details CVE-2008-5235
Heap-based buffer overflow in the demux_real_send_chunk function in src/demuxers/demux_real.c in xine-lib before 1.1.15 allows remote attackers to execute arbitrary code via a crafted Real Media file. NOTE: some of these details are obtained from third party information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.035
EPSS Ranking 87.0%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2008-5235
-
-
cpe:2.3:a:xine:xine:0.9.13
-
-
-
cpe:2.3:a:xine:xine:1.0.1
-
cpe:2.3:a:xine:xine:1.0.2
-
cpe:2.3:a:xine:xine:1.0.3a
-
cpe:2.3:a:xine:xine:1.1.0
-
cpe:2.3:a:xine:xine:1.1.1
-
cpe:2.3:a:xine:xine:1.1.10.1
-
cpe:2.3:a:xine:xine:1.1.11
-
cpe:2.3:a:xine:xine:1.1.11.1
-
cpe:2.3:a:xine:xine:1.1.2
-
cpe:2.3:a:xine:xine:1.1.3