Debian Linux Security Advisory 2044-1 – tixxDZ (DZCORE labs) discovered a vulnerability in the mplayer movie player. Missing data validation in mplayer’s real data transport (RDT) implementation enable an integer underflow and consequently an unbounded buffer operation. A maliciously crafted stream could thus enable an attacker to execute arbitrary code.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/89400/dsa-2044-1.txt
Source: https://packetstormsecurity.com/files/89400/Debian-Linux-Security-Advisory-2044-1.html