FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

libxine -- buffer overflow vulnerability

Affected packages
libxine < 1.1.9.1

Details

VuXML ID 02eedd3c-c6b5-11dc-93b6-000e35248ad7
Discovery 2008-01-08
Entry 2008-01-19

xine project reports:

A new xine-lib version is now available. This release contains a security fix (remotely-expoitable buffer overflow, CVE-2008-0225). It also contains a read-past-end fix for an internal library function which is only used if the OS does not supply it and a rendering fix for Darwin/PPC.

References

CVE Name CVE-2008-0225
URL http://aluigi.altervista.org/adv/xinermffhof-adv.txt
URL http://secunia.com/advisories/28384