Search

published date: December 31, 2004

CVE-2004-1455 : Stack-based Buffer Overflow Vulnerability

Description

Stack-based buffer overflow in Xine-lib-rc5 in xine-lib 1_rc5-r2 and earlier allows remote attackers to execute arbitrary code via crafted playlists that result in a long vcd:// URL.

Product(s):

  • Xine Xine-lib 1 Beta10
  • Xine Xine-lib 1 Beta11
  • Xine Xine-lib 1_beta1
  • Xine Xine-lib 1_beta2
  • Xine Xine-lib 1_beta3
  • Xine Xine-lib 1_beta4

Question to Ask Vendors:

  1. Can you confirm whether your systems are affected by CVE-2004-1455, and if so, what steps are you currently taking to mitigate this vulnerability?
  2. What is your estimated timeline for fully resolving CVE-2004-1455 in your products or services, and how will you communicate updates on this issue to us as your customer?

READY TO GET RESULTS YOU CAN TRUST?