Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2004-1379

Heap-based buffer overflow in the DVD subpicture decoder in xine xine-lib 1-rc5 and earlier allows remote attackers to execute arbitrary code via a (1) DVD or (2) MPEG subpicture header where the second field reuses RLE data from the end of the first field.

  • Published: Sep 16, 2004
  • Updated: Apr 13, 2023
  • CVE: CVE-2004-1379
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/Au:N/C:P/I:P/A:P

No CWE or OWASP classifications available.

Software From Fixed in
xine / xine 1_beta9 1_beta9.x
xine / xine 1_beta3 1_beta3.x
xine / xine 1_rc0a 1_rc0a.x
xine / xine-lib 1_beta7 1_beta7.x
xine / xine-lib 1_rc3 1_rc3.x
xine / xine 1_rc4 1_rc4.x
xine / xine-lib 1_beta9 1_beta9.x
xine / xine 1_alpha 1_alpha.x
xine / xine-lib 1_rc3b 1_rc3b.x
xine / xine 1_beta4 1_beta4.x
xine / xine-lib 0.9.8 0.9.8.x
xine / xine-lib 1_beta4 1_beta4.x
xine / xine-lib 1_rc5 1_rc5.x
xine / xine 1_rc3b 1_rc3b.x
xine / xine 1_beta2 1_beta2.x
xine / xine 1_rc3a 1_rc3a.x
xine / xine 1_rc2 1_rc2.x
xine / xine-lib 1_rc3c 1_rc3c.x
xine / xine 1_beta10 1_beta10.x
xine / xine 1_beta12 1_beta12.x
xine / xine 1_beta11 1_beta11.x
xine / xine 1_beta7 1_beta7.x
xine / xine 1_beta8 1_beta8.x
xine / xine 1_rc1 1_rc1.x
xine / xine-lib 1_rc2 1_rc2.x
xine / xine 1_rc5 1_rc5.x
xine / xine-lib 1_beta2 1_beta2.x
xine / xine-lib 1_rc0 1_rc0.x
xine / xine-lib 1_beta5 1_beta5.x
xine / xine 1_beta6 1_beta6.x
xine / xine 1_beta1 1_beta1.x
xine / xine-lib 1_beta6 1_beta6.x
xine / xine 1_rc3 1_rc3.x
xine / xine-lib 1_rc1 1_rc1.x
xine / xine-lib 1_rc3a 1_rc3a.x
xine / xine 1_rc0 1_rc0.x
xine / xine-lib 1_beta12 1_beta12.x
xine / xine-lib 1_rc4 1_rc4.x
xine / xine 1_beta5 1_beta5.x
xine / xine-lib 1_beta8 1_beta8.x
xine / xine-lib 1_beta3 1_beta3.x