KLA10990
Vulnerability in VideoLAN VLC media player

Обновлено: 03/06/2020
Дата обнаружения
19/06/2014
Уровень угрозы
Critical
Описание

A vulnerability in the transcode module was found in VLC media player versions before 2.1.5. By exploiting this vulnerability malicious users can cause a denial of service or execute arbitrary code. This vulnerability can be exploited remotely via a non-malicious input.


Technical details

This vulnerability can allow a corrupted stream to cause a buffer overflow on the heap.

NB: This vulnerability have no public CVSS rating so rating can be changed by the time.

Пораженные продукты

VideoLAN VLC media player earlier than 2.1.5

Решение

Update to the latest version
Download VLC media player

Первичный источник обнаружения
VLC news
Оказываемое влияние
?
ACE 
[?]

DoS 
[?]
Связанные продукты
VLC media player
CVE-IDS
CVE-2014-64407.5Critical
Узнай статистику распространения уязвимостей в твоем регионе