Vulnerabilities > Mplayer > Mplayer > 1.02rc2

DATE CVE VULNERABILITY TITLE RISK
2008-02-06 CVE-2008-0630 Buffer Errors vulnerability in Mplayer 1.02Rc2
Buffer overflow in url.c in MPlayer 1.0rc2 and SVN before r25823 allows remote attackers to execute arbitrary code via a crafted URL that prevents the IPv6 parsing code from setting a pointer to NULL, which causes the buffer to be reused by the unescape code.
network
mplayer CWE-119
6.8
2008-02-06 CVE-2008-0629 Buffer Errors vulnerability in Mplayer 1.02Rc2
Buffer overflow in stream_cddb.c in MPlayer 1.0rc2 and SVN before r25824 allows remote user-assisted attackers to execute arbitrary code via a CDDB database entry containing a long album title.
network
mplayer CWE-119
4.3
2008-02-05 CVE-2008-0486 Numeric Errors vulnerability in multiple products
Array index vulnerability in libmpdemux/demux_audio.c in MPlayer 1.0rc2 and SVN before r25917, and possibly earlier versions, as used in Xine-lib 1.1.10, might allow remote attackers to execute arbitrary code via a crafted FLAC tag, which triggers a buffer overflow.
network
low complexity
mplayer xine CWE-189
7.5