// For flags

CVE-2008-5246

 

Severity Score

9.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Multiple heap-based buffer overflows in xine-lib before 1.1.15 allow remote attackers to execute arbitrary code via vectors that send ID3 data to the (1) id3v22_interp_frame and (2) id3v24_interp_frame functions in src/demuxers/id3.c. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Múltiples desbordamientos de búfer basados en montículo en xine-lib anterior a 1.1.15; permiten a atacantes remotos ejecutar código de su elección a a través de vectores que envían datos ID3 a las funciones (1) id3v22_interp_frame Y (2) id3v24_interp_frame en src/demuxers/id3.c. NOTA: El origen de esta información es desconocido; los detalles se han obtenido únicamente de información de terceros.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2008-11-25 CVE Reserved
  • 2008-11-26 CVE Published
  • 2023-05-26 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
<= 1.1.14
Search vendor "Xine" for product "Xine-lib" and version " <= 1.1.14"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
0.9.13
Search vendor "Xine" for product "Xine-lib" and version "0.9.13"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc0a
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc1
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc2
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc3
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc3a
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc3b
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc3c
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc4
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc4a
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc5
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc6a
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc7
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1
Search vendor "Xine" for product "Xine-lib" and version "1"
rc8
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.0
Search vendor "Xine" for product "Xine-lib" and version "1.0"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.0.1
Search vendor "Xine" for product "Xine-lib" and version "1.0.1"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.0.2
Search vendor "Xine" for product "Xine-lib" and version "1.0.2"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.0.3a
Search vendor "Xine" for product "Xine-lib" and version "1.0.3a"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.0
Search vendor "Xine" for product "Xine-lib" and version "1.1.0"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.1
Search vendor "Xine" for product "Xine-lib" and version "1.1.1"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.2
Search vendor "Xine" for product "Xine-lib" and version "1.1.2"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.3
Search vendor "Xine" for product "Xine-lib" and version "1.1.3"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.4
Search vendor "Xine" for product "Xine-lib" and version "1.1.4"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.5
Search vendor "Xine" for product "Xine-lib" and version "1.1.5"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.6
Search vendor "Xine" for product "Xine-lib" and version "1.1.6"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.7
Search vendor "Xine" for product "Xine-lib" and version "1.1.7"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.8
Search vendor "Xine" for product "Xine-lib" and version "1.1.8"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.9
Search vendor "Xine" for product "Xine-lib" and version "1.1.9"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.9.1
Search vendor "Xine" for product "Xine-lib" and version "1.1.9.1"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.10
Search vendor "Xine" for product "Xine-lib" and version "1.1.10"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.10.1
Search vendor "Xine" for product "Xine-lib" and version "1.1.10.1"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.11
Search vendor "Xine" for product "Xine-lib" and version "1.1.11"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.11.1
Search vendor "Xine" for product "Xine-lib" and version "1.1.11.1"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.12
Search vendor "Xine" for product "Xine-lib" and version "1.1.12"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1.1.13
Search vendor "Xine" for product "Xine-lib" and version "1.1.13"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1_beta1
Search vendor "Xine" for product "Xine-lib" and version "1_beta1"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1_beta2
Search vendor "Xine" for product "Xine-lib" and version "1_beta2"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1_beta3
Search vendor "Xine" for product "Xine-lib" and version "1_beta3"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1_beta4
Search vendor "Xine" for product "Xine-lib" and version "1_beta4"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1_beta5
Search vendor "Xine" for product "Xine-lib" and version "1_beta5"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1_beta6
Search vendor "Xine" for product "Xine-lib" and version "1_beta6"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1_beta7
Search vendor "Xine" for product "Xine-lib" and version "1_beta7"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1_beta8
Search vendor "Xine" for product "Xine-lib" and version "1_beta8"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1_beta9
Search vendor "Xine" for product "Xine-lib" and version "1_beta9"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1_beta10
Search vendor "Xine" for product "Xine-lib" and version "1_beta10"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1_beta11
Search vendor "Xine" for product "Xine-lib" and version "1_beta11"
-
Affected
Xine
Search vendor "Xine"
Xine-lib
Search vendor "Xine" for product "Xine-lib"
1_beta12
Search vendor "Xine" for product "Xine-lib" and version "1_beta12"
-
Affected