Mandriva Linux Security Advisory – Uncontrolled array index in the sdpplin_parse function in stream/realrtsp/sdpplin.c in MPlayer 1.0 rc2 allows remote attackers to overwrite memory and execute arbitrary code via a large streamid SDP parameter. The updated packages have been patched to fix this issue.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/70010/MDVSA-2008-196.txt
Source: https://packetstormsecurity.com/files/70010/Mandriva-Linux-Security-Advisory-2008-196.html

