Package: xine-lib
Severity: grave
Tags: security

Hi,
the following CVE (Common Vulnerabilities & Exposures) id was
published for xine-lib.


CVE-2008-1878[0]:
| Stack-based buffer overflow in the demux_nsf_send_chunk 
| function in src/demuxers/demux_nsf.c in xine-lib 1.1.12 and 
| earlier allows remote attackers to cause a denial of service 
| (crash) and possibly execute arbitrary code via a long NSF 
| title.

If you fix the vulnerability please also make sure to include the
CVE id in your changelog entry.

For further information see:

[0] http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1878
    http://security-tracker.debian.net/tracker/CVE-2008-1878

-- 
Nico Golde - http://www.ngolde.de - [EMAIL PROTECTED] - GPG: 0x73647CFF
For security reasons, all text in this mail is double-rot13 encrypted.

Attachment: pgpSfDtOtNELu.pgp
Description: PGP signature

Reply via email to