The MPlayer multimedia player suffers from a vulnerability which could result in arbitrary code execution and at the least, in unexpected process termination. Three integer underflows located in the Real demuxer code can be used to exploit a heap overflow, a specific video file can be crafted in order to make the stream_read function reading or writing arbitrary amounts of memory. Versions 1.0 RC2 and below are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/70457/oCERT-2008-013.txt
Source: https://packetstormsecurity.com/files/70457/Open-Source-CERT-Security-Advisory-2008.13.html