CVE-2008-0485

Publication date 5 February 2008

Last updated 24 July 2024


Ubuntu priority

Array index error in libmpdemux/demux_mov.c in MPlayer 1.0 rc2 and earlier might allow remote attackers to execute arbitrary code via a QuickTime MOV file with a crafted stsc atom tag.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
mplayer 7.10 gutsy
Fixed 2:1.0~rc1-0ubuntu13.2
7.04 feisty
Fixed 2:1.0~rc1-0ubuntu9.3
6.10 edgy
Fixed 2:0.99+1.0pre8-0ubuntu8.3
6.06 LTS dapper
Fixed 2:0.99+1.0pre7try2+cvs20060117-0ubuntu8.2

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
mplayer