Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Integer signedness error in DivX Web Player 1.4.2.7, and possibly earlier versions, allows remote attackers to execute arbitrary code via a DivX file containing a crafted Stream Format (STRF) chunk, which triggers a heap-based buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
DivX Web Player STRF块处理堆溢出漏洞
Vulnerability Description
DivX Web Player是一个浏览器插件,允许在浏览器中直接播放在线DivX视频。 DivX Web Player在解析DivX媒体文件中的STRF(Stream Format)块时存在符号错误,如果用户受骗访问了恶意网站并播放了畸形的媒体文件的话,就可以触发堆溢出,导致执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A