
CVE-2022-38600 – Gentoo Linux Security Advisory 202405-05
https://notcve.org/view.php?id=CVE-2022-38600
15 Sep 2022 — Mplayer SVN-r38374-13.0.1 is vulnerable to Memory Leak via vf.c and vf_vo.c. Mplayer versión SVN-r38374-13.0.1, es vulnerable a una pérdida de memoria por medio de los archivos vf.c y vf_vo.c Multiple vulnerabilities have been discovered in MPlayer, the worst of which can lead to arbitrary code execution. Versions greater than or equal to 1.5 are affected. • https://trac.mplayerhq.hu/ticket/2390#comment:2 • CWE-401: Missing Release of Memory after Effective Lifetime •

CVE-2022-38853 – Gentoo Linux Security Advisory 202405-05
https://notcve.org/view.php?id=CVE-2022-38853
15 Sep 2022 — Certain The MPlayer Project products are vulnerable to Buffer Overflow via function asf_init_audio_stream() of libmpdemux/asfheader.c. This affects mplayer SVN-r38374-13.0.1 and mencoder SVN-r38374-13.0.1. Determinados productos de The MPlayer Project son vulnerables a un desbordamiento del búfer por medio de la función asf_init_audio_stream() del archivo libmpdemux/asfheader.c. Esto afecta a mplayer versión SVN-r38374-13.0.1 y mencoder versión SVN-r38374-13.0.1 Multiple vulnerabilities have been discovered... • https://trac.mplayerhq.hu/ticket/2398 • CWE-787: Out-of-bounds Write •

CVE-2022-38856 – Gentoo Linux Security Advisory 202405-05
https://notcve.org/view.php?id=CVE-2022-38856
15 Sep 2022 — Certain The MPlayer Project products are vulnerable to Buffer Overflow via function mov_build_index() of libmpdemux/demux_mov.c. This affects mplayer SVN-r38374-13.0.1 and mencoder SVN-r38374-13.0.1. Determinados productos de The MPlayer Project son vulnerables al desbordamiento del búfer por medio de la función mov_build_index() del archivo libmpdemux/demux_mov.c. Esto afecta a mplayer versión SVN-r38374-13.0.1 y mencoder versión SVN-r38374-13.0.1 Multiple vulnerabilities have been discovered in MPlayer, t... • https://trac.mplayerhq.hu/ticket/2395 • CWE-787: Out-of-bounds Write •

CVE-2022-38862 – Gentoo Linux Security Advisory 202405-05
https://notcve.org/view.php?id=CVE-2022-38862
15 Sep 2022 — Certain The MPlayer Project products are vulnerable to Buffer Overflow via function play() of libaf/af.c:639. This affects mplayer SVN-r38374-13.0.1 and mencoder SVN-r38374-13.0.1. Determinados productos de The MPlayer Project son vulnerables al desbordamiento del búfer por medio de la función play() del archivo libaf/af.c:639. Esto afecta a mplayer versión SVN-r38374-13.0.1 y mencoder versión SVN-r38374-13.0.1 Multiple vulnerabilities have been discovered in MPlayer, the worst of which can lead to arbitrar... • https://trac.mplayerhq.hu/ticket/2404 • CWE-787: Out-of-bounds Write •

CVE-2022-38850 – Gentoo Linux Security Advisory 202405-05
https://notcve.org/view.php?id=CVE-2022-38850
15 Sep 2022 — The MPlayer Project mencoder SVN-r38374-13.0.1 is vulnerable to Divide By Zero via the function config () of llibmpcodecs/vf_scale.c. The MPlayer Project mencoder versión SVN-r38374-13.0.1 es vulnerable a una división por cero por medio de la función config() del archivo llibmpcodecs/vf_scale.c It was discovered that MPlayer could be made to divide by zero when processing certain malformed media files. If a user were tricked into opening a specially crafted media file, an attacker could possibly use this is... • https://lists.debian.org/debian-lts-announce/2022/12/msg00042.html • CWE-369: Divide By Zero •

CVE-2022-38851 – Gentoo Linux Security Advisory 202405-05
https://notcve.org/view.php?id=CVE-2022-38851
15 Sep 2022 — Certain The MPlayer Project products are vulnerable to Out-of-bounds Read via function read_meta_record() of mplayer/libmpdemux/asfheader.c. This affects mplayer SVN-r38374-13.0.1 and mencoder SVN-r38374-13.0.1. Algunos productos de The MPlayer Project son vulnerables a una lectura fuera de límites por medio de la función read_meta_record() del archivo mplayer/libmpdemux/asfheader.c. Esto afecta a mplayer versión SVN-r38374-13.0.1 y mencoder versión SVN-r38374-13.0.1 It was discovered that MPlayer could be ... • https://lists.debian.org/debian-lts-announce/2022/12/msg00042.html • CWE-125: Out-of-bounds Read •

CVE-2022-38855 – Gentoo Linux Security Advisory 202405-05
https://notcve.org/view.php?id=CVE-2022-38855
15 Sep 2022 — Certain The MPlayer Project products are vulnerable to Buffer Overflow via function gen_sh_video () of mplayer/libmpdemux/demux_mov.c. This affects mplayer SVN-r38374-13.0.1 and mencoder SVN-r38374-13.0.1. Determinados productos de The MPlayer Project son vulnerables al desbordamiento del búfer por medio de la función gen_sh_video() del archivo mplayer/libmpdemux/demux_mov.c. Esto afecta a mplayer versión SVN-r38374-13.0.1 y mencoder versión SVN-r38374-13.0.1 Multiple vulnerabilities have been discovered in... • https://lists.debian.org/debian-lts-announce/2022/12/msg00042.html • CWE-787: Out-of-bounds Write •

CVE-2022-38858 – Gentoo Linux Security Advisory 202405-05
https://notcve.org/view.php?id=CVE-2022-38858
15 Sep 2022 — Certain The MPlayer Project products are vulnerable to Buffer Overflow via function mov_build_index() of libmpdemux/demux_mov.c. This affects mplayer SVN-r38374-13.0.1 and mencoder SVN-r38374-13.0.1. Determinados productos de The MPlayer Project son vulnerables al desbordamiento del búfer por medio de la función mov_build_index() del archivo libmpdemux/demux_mov.c. Esto afecta a mplayer versión SVN-r38374-13.0.1 y mencoder versión SVN-r38374-13.0.1 Multiple vulnerabilities have been discovered in MPlayer, t... • https://lists.debian.org/debian-lts-announce/2022/12/msg00042.html • CWE-787: Out-of-bounds Write •

CVE-2022-38860 – Gentoo Linux Security Advisory 202405-05
https://notcve.org/view.php?id=CVE-2022-38860
15 Sep 2022 — Certain The MPlayer Project products are vulnerable to Divide By Zero via function demux_open_avi() of libmpdemux/demux_avi.c which affects mencoder. This affects mplayer SVN-r38374-13.0.1 and mencoder SVN-r38374-13.0.1. Algunos productos de The MPlayer Project son vulnerables a una división por cero por medio de la función demux_open_avi() del archivo libmpdemux/demux_avi.c que afecta a mencoder. Esto afecta a mplayer versión SVN-r38374-13.0.1 y mencoder versión SVN-r38374-13.0.1 It was discovered that MPl... • https://lists.debian.org/debian-lts-announce/2022/12/msg00042.html • CWE-369: Divide By Zero •

CVE-2022-38861 – Gentoo Linux Security Advisory 202405-05
https://notcve.org/view.php?id=CVE-2022-38861
15 Sep 2022 — The MPlayer Project mplayer SVN-r38374-13.0.1 is vulnerable to memory corruption via function free_mp_image() of libmpcodecs/mp_image.c. The MPlayer Project mplayer versión SVN-r38374-13.0.1, es vulnerable a una corrupción de memoria por medio de la función free_mp_image() del archivo libmpcodecs/mp_image.c It was discovered that MPlayer could be made to divide by zero when processing certain malformed media files. If a user were tricked into opening a specially crafted media file, an attacker could possibl... • https://lists.debian.org/debian-lts-announce/2022/12/msg00042.html • CWE-787: Out-of-bounds Write •