Gentoo Linux Security Advisory GLSA 200609-08 – xine-lib contains buffer overflows in the processing of AVI. Additionally, xine-lib is vulnerable to a buffer overflow in the HTTP plugin (xineplug_inp_http.so) via a long reply from an HTTP server. Versions less than 1.1.2-r2 are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/50022/glsa-200609-08.txt
Source: https://packetstormsecurity.com/files/50022/Gentoo-Linux-Security-Advisory-200609-8.html

