CVE-2004-1300

xine-lib - Buffer Overflow in AIFF File Parser

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2004-1300. PoCs published by Ariel Berkman.

AI-analyzed exploit summary The provided content describes a remote buffer overflow vulnerability in the xine media library's 'demux_aiff.c' file, which could allow unauthorized access. However, no actual exploit code is present, only a reference to a binary exploit file.

Description

Buffer overflow in the open_aiff_file function in demux_aiff.c for xine-lib (libxine) 1-rc7 allows remote attackers to execute arbitrary code via a crafted AIFF file.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Ariel Berkman · textremotelinux
https://www.exploit-db.com/exploits/24978

The provided content describes a remote buffer overflow vulnerability in the xine media library's 'demux_aiff.c' file, which could allow unauthorized access. However, no actual exploit code is present, only a reference to a binary exploit file.

Classification
Writeup 80%
Attack Type
Rce
Complexity
Theoretical
Reliability
Theoretical
Target: xine media library (version not specified)
No auth needed
Prerequisites: Vulnerable version of xine media library · Ability to deliver a malicious AIFF file to the target
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/18611
Vendor Advisory vendor-advisory x_refsource_mandrake
http://www.mandriva.com/security/advisories?name=MDKSA-2005:011
Exploit, Vendor Advisory x_refsource_misc
http://tigger.uic.edu/~jlongs2/holes/xine-lib.txt

Scores

EPSS 0.0911
EPSS Percentile 94.6%

Details

Status published
Products (1)
xine/xine-lib 1_rc7
Published Jan 10, 2005
Tracked Since Feb 18, 2026