Vulnerability Database

296,746

Total vulnerabilities in the database

CVE-2008-5236

Multiple heap-based buffer overflows in xine-lib 1.1.12, and other 1.1.15 and earlier versions, allow remote attackers to execute arbitrary code via vectors related to (1) a crafted EBML element length processed by the parse_block_group function in demux_matroska.c; (2) a certain combination of sps, w, and h values processed by the real_parse_audio_specific_data and demux_real_send_chunk functions in demux_real.c; and (3) an unspecified combination of three values processed by the open_ra_file function in demux_realaudio.c. NOTE: vector 2 reportedly exists because of an incomplete fix in 1.1.15.

  • Published: Nov 26, 2008
  • Updated: Apr 13, 2023
  • CVE: CVE-2008-5236
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 9.3
  • AV:N/AC:M/Au:N/C:C/I:C/A:C

CWEs:

Software From Fixed in
xine / xine 1-beta3 1-beta3.x
xine / xine 1-rc0a 1-rc0a.x
xine / xine 1-beta6 1-beta6.x
xine / xine 1.1.10.1 1.1.10.1.x
xine / xine 1.0.1 1.0.1.x
xine / xine 1-rc1 1-rc1.x
xine / xine 1-rc6a 1-rc6a.x
xine / xine 1-beta4 1-beta4.x
xine / xine 1-rc8 1-rc8.x
xine / xine 1.1.0 1.1.0.x
xine / xine 1-rc5 1-rc5.x
xine / xine 1.1.1 1.1.1.x
xine / xine 1-beta7 1-beta7.x
xine / xine 1.0.3a 1.0.3a.x
xine / xine 1.1.3 1.1.3.x
xine / xine 1.0.2 1.0.2.x
xine / xine 1-beta10 1-beta10.x
xine / xine 1-beta1 1-beta1.x
xine / xine 1-rc3a 1-rc3a.x
xine / xine 1.0 1.0.x
xine / xine 1-beta8 1-beta8.x
xine / xine 1.1.11.1 1.1.11.1.x
xine / xine - 1.1.5.x
xine / xine 0.9.13 0.9.13.x
xine / xine 1-beta2 1-beta2.x
xine / xine 1-beta9 1-beta9.x
xine / xine 1-rc7 1-rc7.x
xine / xine 1-rc4 1-rc4.x
xine / xine 1.1.11 1.1.11.x
xine / xine 1-rc3c 1-rc3c.x
xine / xine 1.1.2 1.1.2.x
xine / xine 1-rc2 1-rc2.x
xine / xine 1-rc4a 1-rc4a.x
xine / xine 1-rc3 1-rc3.x
xine / xine 1.1.4 1.1.4.x
xine / xine 1-beta5 1-beta5.x
xine / xine 1-beta11 1-beta11.x
xine / xine 1-beta12 1-beta12.x
xine / xine 1-rc3b 1-rc3b.x