CVE-2008-3827

Publication date 29 September 2008

Last updated 24 July 2024


Ubuntu priority

Multiple integer underflows in the Real demuxer (demux_real.c) in MPlayer 1.0_rc2 and earlier allow remote attackers to cause a denial of service (process termination) and possibly execute arbitrary code via a crafted video file that causes the stream_read function to read or write arbitrary memory.

Status

Package Ubuntu Release Status
mplayer 8.10 intrepid
Not affected
8.04 LTS hardy
Fixed 2:1.0~rc2-0ubuntu13.1
7.10 gutsy
Fixed 2:1.0~rc1-0ubuntu13.3
7.04 feisty Ignored end of life, was needs-triage
6.06 LTS dapper
Fixed 2:0.99+1.0pre7try2+cvs20060117-0ubuntu8.3