In association with heise online

24 August 2007, 16:31

Media Player Classic FLI file blunder

  • Twitter
  • Facebook
  • submit to slashdot
  • StumbleUpon
  • submit to reddit

Due to a buffer overflow, Gabest's open source media player Media Player Classic (MPC) can execute injected malicious code when processing compromised FLI files. This popular alternative to Windows Media Player has not been updated for more than a year. Whether there will be an update is unknown. Users should not open FLI files – an old animation compression format – with MPC version 6.4.9.0 or older.

See also:

  • post about this vulnerability by Team 509
  • download the current, localised versions of Media Player Classic

(mba)

Print Version | Send by email | Permalink: http://h-online.com/-733514
 


  • July's Community Calendar





The H Open

The H Security

The H Developer

The H Internet Toolkit