AlsaPlayer 0.99.x - Vorbis Input Plugin OGG Processing Remote Buffer Overflow



EKU-ID: 35679 CVE: CVE-2007-5301;OSVDB-41643 OSVDB-ID:
Author: Erik Published: 2007-10-08 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/25969/info

AlsaPlayer is prone to a remote buffer-overflow vulnerability because it fails to properly bounds-check user-supplied data before copying it to an insufficiently sized buffer.

Exploiting this issue allows attackers to execute arbitrary machine code in the context of users running the affected application.

This issue affects versions prior to AlsaPlayer 0.99.80-rc3.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/30648.ogg