Stack-based buffer overflow in the demux_open_vqf function in libmpdemux/demux_vqf.c in MPlayer 1.0 rc2 before r28150 allows remote attackers to execute arbitrary code via a malformed TwinVQ file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.077
EPSS Ranking 93.8%