KLA10791
Buffer overflow vulnerability in VLC media player
Updated: 06/01/2019
Detect date
?
04/18/2016
Severity
?
Warning
Description

Buffer overflow vulnerability was found in VLC media player. By exploiting this vulnerability malicious users can cause a denial of service (crash). This vulnerability can be exploited remotely via a crafted wav file.


Technical details

This vulnerability is in the AStreamPeekStream function in input/stream.c and related to “seek across EOF” functionality.

Affected products

VideoLAN VLC media player versions earlier 2.2.0

Solution

Update to the latest version
Download page with latest version of VLC media player

Impacts
?
DoS 
[?]
CVE-IDS
?
CVE-2016-39414.3Warning