In association with heise online

24 August 2007, 17:31

Media Player Classic FLI file blunder

Due to a buffer overflow, Gabest's open source media player Media Player Classic (MPC) can execute injected malicious code when processing compromised FLI files. This popular alternative to Windows Media Player has not been updated for more than a year. Whether there will be an update is unknown. Users should not open FLI files – an old animation compression format – with MPC version 6.4.9.0 or older.

See also:

  • post about this vulnerability by Team 509
  • download the current, localised versions of Media Player Classic

(mba)

  • Share this article
  • Twitter
  • Facebook
  • digg this
  • submit to slashdot
  • post to delicious
  • StumbleUpon
  • submit to reddit







The H open source

The H Security

The H Internet Toolkit