Media Player Classic FLI file blunder
Due to a buffer overflow, Gabest's open source media player Media Player Classic (MPC) can execute injected malicious code when processing compromised FLI files. This popular alternative to Windows Media Player has not been updated for more than a year. Whether there will be an update is unknown. Users should not open FLI files – an old animation compression format – with MPC version 220.127.116.11 or older.
- post about this vulnerability by Team 509
- download the current, localised versions of Media Player Classic