VDB
CVE-2008-0073
CVE-2008-0073
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Array index error in the sdpplin_parse function in input/libreal/sdpplin.c in xine-lib 1.1.10.1 allows remote RTSP servers to execute arbitrary code via a large streamid SDP parameter.
EPSS 9.26% · 95.1th percentile
Risk Scores
CVSS 2.0
6.800000190734863
EPSS Score
9.26%
95.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| xine | xine-lib | 1.1.10.1 |
Timeline
- Mar 24, 2008 CVE Published
- Mar 25, 2008 PoC Published
- Apr 25, 2008 PoC Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 21, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 19, 2022 EPSS Score
- Feb 10, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
References
- http://secunia.com/secunia_research/2008-10/ url
- DSA-1543 vendor-advisory
- FEDORA-2008-2945 vendor-advisory
- SUSE-SR:2008:012 vendor-advisory
- 29392 third-party-advisory
- FEDORA-2008-2569 vendor-advisory
- GLSA-200804-25 vendor-advisory
- 31393 third-party-advisory
- SUSE-SR:2008:007 vendor-advisory
- http://xinehq.de/index.php/news url
- ADV-2008-0923 vdb
- 29766 third-party-advisory
- 1019682 vdb
- 29578 third-party-advisory
- ADV-2008-0985 vdb
- USN-635-1 vendor-advisory
- GLSA-200808-01 vendor-advisory
- SSA:2008-089-03 vendor-advisory
- 28312 vdb
- xinelib-sdpplinparse-bo(41339) vdb
…and 16 more