7.5 High
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
0.163 Low
EPSS
Percentile
96.0%
DISPUTED Stack-based buffer overflow in the demux_nsf_send_headers
function in src/demuxers/demux_nsf.c in xine-lib allows remote attackers to
have an unknown impact via a long copyright field in an NSF header in an
NES Sound file, a different issue than CVE-2008-1878. NOTE: a third party
claims that the copyright field always has a safe length.