
CVE-2008-1912 – DivX Player 6.7.0 - '.srt' File Buffer Overflow (PoC)
https://notcve.org/view.php?id=CVE-2008-1912
22 Apr 2008 — Stack-based buffer overflow in DivX Player 6.7 build 6.7.0.22 and earlier allows user-assisted remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long subtitle in a .SRT file. Desbordamiento de búfer basado en pila en DivX Player 6.7 build 6.7.0.22 y versiones anteriores permite a atacantes remotos con usuario asistido provocar una denegación de servicio (caída de aplicación) o ejecutar código de su elección a través de un subtítulo largo en un fichero .SRT. • https://www.exploit-db.com/exploits/5453 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2005-0304
https://notcve.org/view.php?id=CVE-2005-0304
10 Feb 2005 — Directory traversal vulnerability in DivX Player 2.6 and earlier allows remote attackers to overwrite arbitrary files via a .. (dot dot) in a filename in a ZIP file for a skin. • http://aluigi.altervista.org/adv/divxplayer-adv.txt •