CVE-2008-0225

Priority
Description
Heap-based buffer overflow in the rmff_dump_cont function in
input/libreal/rmff.c in xine-lib 1.1.9 and earlier allows remote attackers
to execute arbitrary code via the SDP Abstract attribute in an RTSP
session, related to the rmff_dump_header function and related to
disregarding the max field. NOTE: some of these details are obtained from
third party information.
Assigned-to
jdstrand
Notes
Package
Upstream:not-affected
Patches:
Vendor:http://www.debian.org/security/2008/dsa-1496
More Information

Updated: 2020-07-28 19:37:21 UTC (commit d26b6ca9f5b3adb89bb036ce73ae7dab894935ec)