MPG123 Remote Stereo Boundary Buffer Overflow Vulnerability

Reportedly mpg123 is affected by a remote stereo boundary buffer overflow vulnerability. This issue is due to a failure of the application to properly validate user-supplied string sizes prior to copying them into process buffers.

This issue will allow a malicious user to manipulate process memory ultimately leading to arbitrary code execution in the context of the user that started the vulnerable application.


 

Privacy Statement
Copyright 2010, SecurityFocus