DescriptionStack-based buffer overflow in the sub_read_line_sami function in subreader.c in MPlayer, as used in SMPlayer 0.6.9, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a SAMI subtitle file.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub advisories/code/issues, web search, more)
Debian Bugs645987, 646937

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
mplayer (PTS)buster2:1.3.0-8fixed
buster (security)2:1.3.0-8+deb10u1fixed
bookworm, sid2:1.5+svn38408-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
mplayersourcesqueeze(not affected)


[squeeze] - mplayer <not-affected> (Malformed SMI file correctly rejected, possibly introduced by later changes)

Search for package or bug name: Reporting problems