Vulnerabilities (CVE)

Filtered by vendor Divx Subscribe
Filtered by product Divx Web Player
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-5259 1 Divx 1 Divx Web Player 2024-02-28 9.3 HIGH N/A
Integer signedness error in DivX Web Player 1.4.2.7, and possibly earlier versions, allows remote attackers to execute arbitrary code via a DivX file containing a crafted Stream Format (STRF) chunk, which triggers a heap-based buffer overflow.
CVE-2007-1294 1 Divx 1 Divx Web Player 2024-02-28 7.8 HIGH N/A
A certain ActiveX control in the DivXBrowserPlugin (npdivx32.dll) in DivX Web Player, as distributed with DivX Player 1.3.0, allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via large values to DivxWP.Resize, related to resizing images.