Core Security Technologies Advisory – The MPlayer package is vulnerable to a buffer overflow attack, which can be exploited by malicious remote attackers. The vulnerability is due to MPlayer not properly sanitizing certain tags on a FLAC file before using them to index an array on the stack. This can be exploited to execute arbitrary commands by opening a specially crafted file.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/63236/CORE-2007-1218.txt
Source: https://packetstormsecurity.com/files/63236/Core-Security-Technologies-Advisory-2007.1218.html