KLA10990
Vulnerability in VideoLAN VLC media player
Обновлено: 17/06/2019
Дата обнаружения
19/06/2014
Уровень угрозы
Critical
Описание

A vulnerability in the transcode module was found in VLC media player versions before 2.1.5. By exploiting this vulnerability malicious users can cause a denial of service or execute arbitrary code. This vulnerability can be exploited remotely via a non-malicious input.


Technical details

This vulnerability can allow a corrupted stream to cause a buffer overflow on the heap.

NB: This vulnerability have no public CVSS rating so rating can be changed by the time.

Пораженные продукты

VideoLAN VLC media player earlier than 2.1.5

Решение

Update to the latest version
Download VLC media player

Первичный источник обнаружения
VLC news
Оказываемое влияние
?
ACE 
[?]

DoS 
[?]
Связанные продукты
VLC media player
CVE-IDS
CVE-2014-64407.5Critical