Stack-based buffer overflow in the demux_open_vqf function in libmpdemux/demux_vqf.c in MPlayer 1.0 rc2 before r28150 allows remote attackers to execute arbitrary code via a malformed TwinVQ file. Original advisory: http://trapkit.de/advisories/TKADV2008-014.txt Reproducible: Always
*** This bug has been marked as a duplicate of bug 251017 ***