Xine-lib contains an integer overflow vulnerability while parsing malformed STTS atoms of Quicktime movie files. The vulnerability may be exploited by a (remote) attacker to execute arbitrary code in the context of an application using the xine library. Versions 1.1.16.2 and below are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/76375/TKADV2009-005.txt
Source: https://packetstormsecurity.com/files/76375/xine-lib-Quicktime-STTS-Atom-Integer-Overflow.html

