Novell Home

CVE-2008-1161

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2008-1161 at MITRE

Description

Buffer overflow in the Matroska demuxer (demuxers/demux_matroska.c) in xine-lib before 1.1.10.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Matroska file with invalid frame sizes.

Novell/SUSE information

Novell Bugzilla entry: 362078

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE LINUX 10.1
  • xine-devel >= 1.1.1-24.29
  • xine-extra >= 1.1.1-24.29
  • xine-lib >= 1.1.1-24.29
  • xine-lib-32bit >= 1.1.1-24.29
  • xine-lib-64bit >= 1.1.1-24.29
  • xine-ui >= 0.99.4-32.25
openSUSE 10.2
  • xine-devel >= 1.1.2-40.7
  • xine-extra >= 1.1.2-40.7
  • xine-lib >= 1.1.2-40.7
  • xine-lib-32bit >= 1.1.2-40.7
  • xine-lib-64bit >= 1.1.2-40.7
  • xine-ui >= 0.99.4-84.4
  • xine-ui-32bit >= 0.99.4-84.4
  • xine-ui-64bit >= 0.99.4-84.4
SUSE Linux Enterprise Desktop 10 SP1 for x86
  • xine-devel >= 1.1.1-24.29
  • xine-lib >= 1.1.1-24.29
Builds
ZYPP Patch Nr: 5080
SUSE Linux Enterprise Desktop 10 SP1 for AMD64 and Intel EM64T
  • xine-devel >= 1.1.1-24.29
  • xine-lib >= 1.1.1-24.29
  • xine-lib-32bit >= 1.1.1-24.29
Builds
ZYPP Patch Nr: 5080
SLE SDK 10 SP1 for x86
  • xine-devel >= 1.1.1-24.29
  • xine-extra >= 1.1.1-24.29
  • xine-lib >= 1.1.1-24.29
  • xine-ui >= 0.99.4-32.25
Builds
ZYPP Patch Nr: 5080
SLE SDK 10 SP1 for IPF
  • xine-devel >= 1.1.1-24.29
  • xine-extra >= 1.1.1-24.29
  • xine-lib >= 1.1.1-24.29
  • xine-lib-x86 >= 1.1.1-24.29
  • xine-ui >= 0.99.4-32.25
Builds
ZYPP Patch Nr: 5080
SLE SDK 10 SP1 for IBM iSeries and IBM pSeries
  • xine-devel >= 1.1.1-24.29
  • xine-extra >= 1.1.1-24.29
  • xine-lib >= 1.1.1-24.29
  • xine-lib-64bit >= 1.1.1-24.29
  • xine-ui >= 0.99.4-32.25
Builds
ZYPP Patch Nr: 5080
SLE SDK 10 SP1 for IBM zSeries
SLE SDK 10 SP1 for X86-64
  • xine-devel >= 1.1.1-24.29
  • xine-extra >= 1.1.1-24.29
  • xine-lib >= 1.1.1-24.29
  • xine-lib-32bit >= 1.1.1-24.29
  • xine-ui >= 0.99.4-32.25
Builds
ZYPP Patch Nr: 5080

© 2012 Novell