Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
demux_qt.c in xine-lib 1.1.12, and other 1.1.15 and earlier versions, does not validate the count field before calling calloc for STSD_ATOM atom allocation, which allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted media file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
xine-lib库中在STSD_ATOM元素拒绝服务攻击或任意代码执行漏洞
Vulnerability Description
xine是一款免费的媒体播放器,支持多种格式。 xine-lib库中在STSD_ATOM元素配置前的不适当的计算字段,远程攻击者可以造成拒绝服务攻击或执行任意代码利用特殊的媒体文件.
CVSS Information
N/A
Vulnerability Type
N/A