CVE-2008-0485

Severity CVSS v4.0:
Pending analysis
Type:
CWE-189 Numeric Errors
Publication date:
05/02/2008
Last modified:
09/04/2025

Description

Array index error in libmpdemux/demux_mov.c in MPlayer 1.0 rc2 and earlier might allow remote attackers to execute arbitrary code via a QuickTime MOV file with a crafted stsc atom tag.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mplayer:mplayer:*:*:*:*:*:*:*:* 1.02rc2 (including)