Vulnerabilities (CVE)

Filtered by vendor Xine Subscribe
Filtered by product Gxine
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-1692 1 Xine 1 Gxine 2024-02-14 7.5 HIGH N/A
Format string vulnerability in gxine 0.4.1 through 0.4.4, and other versions down to 0.3, allows remote attackers to execute arbitrary code via a ram file with a URL whose hostname contains format string specifiers.
CVE-2004-1034 3 Gentoo, Kaffeine, Xine 3 Linux, Kaffeine Player, Gxine 2023-12-10 10.0 HIGH N/A
Buffer overflow in the http_open function in Kaffeine before 0.5, whose code is also used in gxine before 0.3.3, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long Content-Type header for a Real Audio Media (.ram) playlist file.
CVE-2006-2802 1 Xine 2 Gxine, Xine-lib 2023-12-10 5.0 MEDIUM N/A
Buffer overflow in the HTTP Plugin (xineplug_inp_http.so) for xine-lib 1.1.1 allows remote attackers to cause a denial of service (application crash) via a long reply from an HTTP server, as demonstrated using gxine 0.5.6.