Integer overflow in the MP4_ReadBox_rdrf function in libmp4.c for VLC 0.8.6e allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted MP4 RDRF box that triggers a heap-based buffer overflow, a different vulnerability than CVE-2008-0984.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2008-03-25T00:00:00

Updated: 2017-09-28T12:57:01

Reserved: 2008-03-24T00:00:00


Link: CVE-2008-1489

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2008-03-25T00:44:00.000

Modified: 2017-09-29T01:30:44.583


Link: CVE-2008-1489

JSON object: View

cve-icon Redhat Information

No data.

CWE