1 results (0.001 seconds)

CVSS: 9.8EPSS: 3%CPEs: 3EXPL: 1

13 Jan 2015 — Multiple integer signedness errors in DirectShowDemuxFilter, as used in Divx Web Player, Divx Player, and other Divx plugins, allow remote attackers to execute arbitrary code via a (1) negative or (2) large value in a Stream Format (STRF) chunk in an AVI file, which triggers a heap-based buffer overflow. Múltiples errores del signo de enteros en DirectShowDemuxFilter, utilizado en Divx Web Player, Divx Player, y otros plugins de Divx, permiten a atacantes remotos ejecutar código arbitrario a través de un va... • http://seclists.org/fulldisclosure/2014/Apr/283 • CWE-189: Numeric Errors •