|
A remote overflow exists in MPlayer. MPlayer fails to properly sanitize the "thewLongsPerEntry" and "nEntriesInUse" values in the "indx" chunk in an AVI file in "libmpdemux/aviheader.c" resulting in a heap-based buffer overflow. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of integrity and/or availability.
|