CVE-2008-1878
xine-lib < 1.1.12 - Stack-based Buffer Overflow via Long NSF Title
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-1878. PoCs published by Guido Landi.
AI-analyzed exploit summary The exploit demonstrates a stack-based buffer overflow in xine-lib's NES Sound Format demuxer. The PoC generates a malicious file that triggers the overflow when processed, potentially leading to arbitrary code execution.
Description
Stack-based buffer overflow in the demux_nsf_send_chunk function in src/demuxers/demux_nsf.c in xine-lib 1.1.12 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long NSF title.
Exploits (1)
The exploit demonstrates a stack-based buffer overflow in xine-lib's NES Sound Format demuxer. The PoC generates a malicious file that triggers the overflow when processed, potentially leading to arbitrary code execution.