2 results (0.009 seconds)

CVSS: 9.3EPSS: 12%CPEs: 1EXPL: 2

Stack-based buffer overflow in DivX Player 6.7 build 6.7.0.22 and earlier allows user-assisted remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long subtitle in a .SRT file. Desbordamiento de búfer basado en pila en DivX Player 6.7 build 6.7.0.22 y versiones anteriores permite a atacantes remotos con usuario asistido provocar una denegación de servicio (caída de aplicación) o ejecutar código de su elección a través de un subtítulo largo en un fichero .SRT. • https://www.exploit-db.com/exploits/5453 https://www.exploit-db.com/exploits/5492 http://secunia.com/advisories/29780 http://www.securityfocus.com/archive/1/490898/100/0/threaded http://www.securityfocus.com/bid/28799 http://www.securitytracker.com/id?1019921 http://www.vupen.com/english/advisories/2008/1235/references • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 5.0EPSS: 5%CPEs: 1EXPL: 1

DivXBrowserPlugin (aka DivX Web Player) npdivx32.dll, as distributed with DivX Player 6.4.1, allows remote attackers to cause a denial of service (Internet Explorer 7 crash) by invoking the GoWindowed method for a certain instance of the ActiveX object. DivXBrowerPlugin (también conocido como DivX Web Player) npdivx32.dll, como se distribuye con DivX Player 6.4.1, permite a atacantes remotos provocar una denegación de servicio (cierre de Internet Explorer 7) invocando el método GoWindowed para una determinada instancia del objeto ActiveX. • https://www.exploit-db.com/exploits/3157 http://osvdb.org/37693 http://www.securityfocus.com/bid/22133 https://exchange.xforce.ibmcloud.com/vulnerabilities/31601 •