CVE-2007-2948

Publication date 7 June 2007

Last updated 17 July 2025


Ubuntu priority

Multiple stack-based buffer overflows in stream/stream_cddb.c in MPlayer before 1.0rc1try3 allow remote attackers to execute arbitrary code via a CDDB entry with a long (1) album title or (2) category.

Status

Package Ubuntu Release Status
mplayer 7.10 gutsy
Not affected
7.04 feisty
Fixed 1.0~rc1-0ubuntu9.1
6.10 edgy
Fixed 2:0.99+1.0pre8-0ubuntu8.2
6.06 LTS dapper
Fixed 2:0.99+1.0pre7try2+cvs20060117-0ubuntu8.1