PornoSecurity: sexy vulns, porno sploits and the like

xine-lib NSF Demuxer Buffer Overflow Vulnerability

Posted on 2008-04-17 12:40:27 in PornoSecurity

Xine LogoI found a stack-based buffer overflow in the NES Sound Format demuxer(demux_nsf.c) of xine-lib <= 1.1.12. The vulnerability is caused due to a boundary error within the "demux_nsf_send_chunk()" function in src/demuxers/demux_nsf.c and can be exploited to run arbitrary code while processing an NSF file with an overly large NSF title tag.

 

Secunia advisory

Nick  


2008-05-08 14:58:06  

sweet : cool shit you got here

2008-05-18 18:31:22  

k`sOSe: thx

2008-05-23 12:02:19  

k`sOSe: well said patrik! ;)

2008-05-23 16:12:11  

nopper: w00ting club :)

2008-05-23 16:22:50  

k`sOSe: yeah indeed, my brotha