CVE-2004-1475

xine-lib 1-rc2-1-rc5 - Stack-Based Buffer Overflow via Long VideoCD MRL or Subtitle Lines

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2004-1475. PoCs published by c0ntex.

AI-analyzed exploit summary This exploit demonstrates a stack-based buffer overflow in Xine-lib's handling of the vcd:// input source identifier, allowing remote code execution via a crafted playlist file (e.g., .asx). The PoC includes a server that delivers a malicious payload to overflow the buffer and execute arbitrary code.

Description

Multiple stack-based buffer overflows in xine-lib 1-rc2 through 1-rc5 allow attackers to execute arbitrary code via (1) long VideoCD vcd:// MRLs or (2) long subtitle lines.

Exploits (1)

exploitdb WORKING POC VERIFIED
by c0ntex · cremotelinux
https://www.exploit-db.com/exploits/386

This exploit demonstrates a stack-based buffer overflow in Xine-lib's handling of the vcd:// input source identifier, allowing remote code execution via a crafted playlist file (e.g., .asx). The PoC includes a server that delivers a malicious payload to overflow the buffer and execute arbitrary code.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Xine-lib (including Xine-lib-rc5)
No auth needed
Prerequisites: Victim must open a malicious playlist file (e.g., .asx) via Xine
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (7)

Core 7
Core References
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/11206
Various Sources x_refsource_confirm
http://xinehq.de/index.php/security/XSA-2004-4
Vendor Advisory mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/375485/2004-09-02/2004-09-08/0
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/17432
Patch vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-200408-18.xml
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/17430
Patch vendor-advisory x_refsource_gentoo
http://www.gentoo.org/security/en/glsa/glsa-200409-30.xml

Scores

EPSS 0.0837
EPSS Percentile 94.3%

Details

Status published
Products (10)
xine/xine 0.9.18
xine/xine 1_rc2
xine/xine 1_rc3
xine/xine 1_rc4
xine/xine 1_rc5
xine/xine-lib 0.99
xine/xine-lib 1_rc2
xine/xine-lib 1_rc3
xine/xine-lib 1_rc4
xine/xine-lib 1_rc5
Published Dec 31, 2004
Tracked Since Feb 18, 2026