Vulnonym.org

CVE-2008-1912 - Nerval Calculator

Description

Stack-based buffer overflow in DivX Player 6.7 build 6.7.0.22 and earlier allows user-assisted remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long subtitle in a .SRT file.

Reference

http://www.securityfocus.com/bid/28799 http://secunia.com/advisories/29780 http://www.securitytracker.com/id?1019921 http://www.vupen.com/english/advisories/2008/1235/references https://www.exploit-db.com/exploits/5492 https://www.exploit-db.com/exploits/5453 http://www.securityfocus.com/archive/1/490898/100/0/threaded