xine-ui

Page content
  • Author: voroskoi
  • Vulnerable: 0.99.4-2
  • Unaffected: 0.99.4-3siwenna1

A vulnerability has been reported in xine-ui, which potentially can be exploited by malicious people to compromise a user’s system. The vulnerability is caused due to a format string error within the “errors_create_window()” function in errors.c. This may be exploited to execute arbitrary code by e.g. tricking a user into opening a specially crafted playlist file.

CVEs: