CVE-2006-1905
HIGH 7.5EPSS 14.3%
Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine 0.99.3 allow remote attackers to execute arbitrary code via format string specifiers in a long filename on an EXTINFO line in a playlist file.
- CVSS v2.0
- 7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P - EPSS
- 14.26% chance of exploitation in the next 30 days, 96th percentile
- Published
- 2006-04-20
- Updated
- 2024-08-07