Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-1188
Description:The pnm_get_chunk function in xine 0.99.2 and earlier, and other packages such as MPlayer that use the same code, does not properly verify that the chunk size is less than the PREAMBLE_SIZE, which causes a read operation with a negative length that leads to a buffer overflow via (1) RMF_TAG, (2) DATA_TAG, (3) PROP_TAG, (4) MDPR_TAG, and (5) CONT_TAG values, a different vulnerability than CVE-2004-1187.
Test IDs: 1.3.6.1.4.1.25623.1.0.52266  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-1188
http://www.idefense.com/application/poi/display?id=177&type=vulnerabilities
http://www.mandriva.com/security/advisories?name=MDKSA-2005:011
XForce ISS Database: xine-pnmgetchunk-bo(18638)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18638




© 1998-2025 E-Soft Inc. All rights reserved.