CVE-2007-4938
HIGH 7.6EPSS 16.0%
Heap-based buffer overflow in libmpdemux/aviheader.c in MPlayer 1.0rc1 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a .avi file with certain large "indx truck size" and nEntriesInuse values, and a certain wLongsPerEntry value.
- CVSS v2.0
- 7.6 HIGH
AV:N/AC:H/Au:N/C:C/I:C/A:C - EPSS
- 16.05% chance of exploitation in the next 30 days, 97th percentile
- Published
- 2007-09-18
- Updated
- 2024-08-07