Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Stack-based buffer overflow in Xine-lib-rc5 in xine-lib 1_rc5-r2 and earlier allows remote attackers to execute arbitrary code via crafted playlists that result in a long vcd:// URL.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
xine 'vcd'协议处理远程任意指令执行漏洞
Vulnerability Description
Xine是Linux系统下播放VCD/DVD的程序。 Xine处理'vcd://'协议时缺少正确的边界缓冲区检查,远程攻击者可以利用这个漏洞以进程权限在系统上执行任意指令。 攻击者可以构建在播放文件中嵌入特殊的'vcd://'协议的数据,当目标用户播放此文件时,可触发基于堆栈的缓冲区溢出,精心构建文件数据可能以进程权限在系统上执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A