|
发表于 2003-9-26 09:49:48
|
显示全部楼层
回复: Hot! MPlayer 再次升级至0.92 Release!
这个好像不是升级,是bug-fix吧:p
2003.09.25, Thursday :: Exploitable remote buffer overflow vulnerability in MPlayer
Severity:
HIGH (if playing ASX streaming content)
LOW (if playing only normal files)
Description:
A remotely exploitable buffer overflow vulnerability was found in MPlayer. A malicious host can craft a harmful ASX header, and trick MPlayer into executing arbitrary code upon parsing that header.
MPlayer versions affected:
MPlayer 0.90pre series
MPlayer 0.90rc series
MPlayer 0.90
MPlayer 0.91
MPlayer 1.0pre1
MPlayer versions unaffected:
MPlayer releases before 0.90pre1
MPlayer 0.92
MPlayer HEAD CVS |
|