Lucene search

K
cve[email protected]CVE-2007-6718
HistoryOct 03, 2022 - 4:14 p.m.

CVE-2007-6718

2022-10-0316:14:28
web.nvd.nist.gov
28
mplayer
cve-2007-6718
denial of service
sigsegv
application crash
security vulnerability
remote attack

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

6.4 Medium

AI Score

Confidence

Low

0.164 Low

EPSS

Percentile

96.0%

MPlayer, possibly 1.0rc1, allows remote attackers to cause a denial of service (SIGSEGV and application crash) via (1) a malformed MP3 file, as demonstrated by lol-mplayer.mp3; (2) a malformed Ogg Vorbis file, as demonstrated by lol-mplayer.ogg; (3) a malformed MPEG-1 file, as demonstrated by lol-mplayer.mpg; (4) a malformed MPEG-2 file, as demonstrated by lol-mplayer.m2v; (5) a malformed MPEG-4 AVI file, as demonstrated by lol-mplayer.avi; (6) a malformed FLAC file, as demonstrated by lol-mplayer.flac; (7) a malformed Ogg Theora file, as demonstrated by lol-mplayer.ogm; (8) a malformed WMV file, as demonstrated by lol-mplayer.wmv; or (9) a malformed AAC file, as demonstrated by lol-mplayer.aac. NOTE: vector 5 might overlap CVE-2007-4938, and vector 6 might overlap CVE-2008-0486.

Affected configurations

NVD
Node
mplayermplayerRange≀1.0_rc1
OR
mplayermplayerMatch0.90
OR
mplayermplayerMatch0.90_pre
OR
mplayermplayerMatch0.90_rc
OR
mplayermplayerMatch0.90_rc4
OR
mplayermplayerMatch0.91
OR
mplayermplayerMatch0.92
OR
mplayermplayerMatch0.92.1
OR
mplayermplayerMatch0.92_cvs
OR
mplayermplayerMatch1.0_pre1
OR
mplayermplayerMatch1.0_pre2
OR
mplayermplayerMatch1.0_pre3
OR
mplayermplayerMatch1.0_pre3try2
OR
mplayermplayerMatch1.0_pre4
OR
mplayermplayerMatch1.0_pre5
OR
mplayermplayerMatch1.0_pre5try1
OR
mplayermplayerMatch1.0_pre5try2
OR
mplayermplayerMatch1.0_pre6
OR
mplayermplayerMatch1.0_pre7
OR
mplayermplayerMatch1.0_pre7try2

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

6.4 Medium

AI Score

Confidence

Low

0.164 Low

EPSS

Percentile

96.0%