CVE-2008-0073

Xine-lib - Numeric Error

Title source: rule

Description

Array index error in the sdpplin_parse function in input/libreal/sdpplin.c in xine-lib 1.1.10.1 allows remote RTSP servers to execute arbitrary code via a large streamid SDP parameter.

Exploits (1)

exploitdb WORKING POC
pythonlocalwindows
https://www.exploit-db.com/exploits/5498

References (34)

... and 14 more

Scores

EPSS 0.0177
EPSS Percentile 82.7%

Details

CWE
CWE-189
Status published
Products (1)
xine/xine-lib 1.1.10.1
Published Mar 24, 2008
Tracked Since Feb 18, 2026