ports/85475: Fix buffer overflow in multimedia/mplayer

Thomas E. Zander riggs at rrr.de
Tue Aug 30 12:00:44 UTC 2005


>Number:         85475
>Category:       ports
>Synopsis:       Fix buffer overflow in multimedia/mplayer
>Confidential:   no
>Severity:       serious
>Priority:       high
>Responsible:    freebsd-ports-bugs
>State:          open
>Quarter:        
>Keywords:       
>Date-Required:
>Class:          maintainer-update
>Submitter-Id:   current-users
>Arrival-Date:   Tue Aug 30 12:00:42 GMT 2005
>Closed-Date:
>Last-Modified:
>Originator:     Thomas E. Zander
>Release:        FreeBSD 5.4-STABLE i386
>Organization:
>Environment:
System: FreeBSD marvin.riggiland.au 5.4-STABLE FreeBSD 5.4-STABLE #7: Tue Aug 16 10:51:31 CEST 2005 root at marvin.riggiland.au:/usr/obj/usr/src/sys/MARVIN i386
>Description:
Mplayer seems vulnerable when playing uncompressed pcm streams.
The development team released a new tarball containing a fix for
libmpcodecs/ad_pcm.c addressing this issue.
>How-To-Repeat:
>Fix:

Patch to multimedia/mplayer

diff -ruN mplayer-old/Makefile mplayer/Makefile
--- mplayer-old/Makefile	Tue May 31 21:58:32 2005
+++ mplayer/Makefile	Tue Aug 30 13:36:42 2005
@@ -264,7 +264,7 @@
 
 PORTNAME=	mplayer
 PORTVERSION=	0.99.7
-PORTREVISION=	4
+PORTREVISION=	5
 CATEGORIES=	multimedia audio ipv6
 MASTER_SITES=	http://www1.mplayerhq.hu/MPlayer/releases/ \
 		http://www2.mplayerhq.hu/MPlayer/releases/ \
@@ -276,7 +276,7 @@
 		ftp://ftp.lug.udel.edu/MPlayer/releases/ \
 		ftp://mirrors.xmission.com/MPlayer/releases/ \
 		http://www.rrr.de/~riggs/mplayer/
-DISTNAME=	MPlayer-1.0pre7
+DISTNAME=	MPlayer-1.0pre7try2
 
 MAINTAINER=	riggs at rrr.de
 COMMENT=	High performance media player/encoder supporting many formats
diff -ruN mplayer-old/distinfo mplayer/distinfo
--- mplayer-old/distinfo	Tue Apr 26 15:00:35 2005
+++ mplayer/distinfo	Tue Aug 30 13:37:23 2005
@@ -1,2 +1,2 @@
-MD5 (MPlayer-1.0pre7.tar.bz2) = 5fadd6957d3aab989cd760ff38fb8fdf
-SIZE (MPlayer-1.0pre7.tar.bz2) = 6868877
+MD5 (MPlayer-1.0pre7try2.tar.bz2) = aaca4fd327176c1afb463f0f047ef6f4
+SIZE (MPlayer-1.0pre7try2.tar.bz2) = 6868786
>Release-Note:
>Audit-Trail:
>Unformatted:



More information about the freebsd-ports-bugs mailing list