CVE-2010-3907
- EPSS 4.74%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer overflows in real.c in the Real demuxer plugin in VideoLAN VLC Media Player before 1.1.6 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a zero i_subpackets value in a Re...
CVE-2010-3124
- EPSS 8.39%
- Veröffentlicht 26.08.2010 18:36:35
- Zuletzt bearbeitet 11.04.2025 00:51:21
Untrusted search path vulnerability in bin/winvlc.c in VLC Media Player 1.1.3 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse wintab32.dll that is located i...
- EPSS 1.38%
- Veröffentlicht 20.08.2010 18:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ReadMetaFromId3v2 function in taglib.cpp in the TagLib plugin in VideoLAN VLC media player 0.9.0 through 1.1.2 does not properly process ID3v2 tags, which allows remote attackers to cause a denial of service (application crash) via a crafted medi...
CVE-2010-0364
- EPSS 6.67%
- Veröffentlicht 21.01.2010 20:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Stack-based buffer overflow in VideoLAN VLC Media Player 0.8.6 allows user-assisted remote attackers to execute arbitrary code via an ogg file with a crafted Advanced SubStation Alpha Subtitle (.ass) file, probably involving the Dialogue field.
CVE-2009-2484
- EPSS 68.59%
- Veröffentlicht 16.07.2009 16:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Stack-based buffer overflow in the Win32AddConnection function in modules/access/smb.c in VideoLAN VLC media player 0.9.9, when running on Microsoft Windows, allows remote attackers to cause a denial of service (application crash) and possibly execut...
- EPSS 9.98%
- Veröffentlicht 23.03.2009 16:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
requests/status.xml in VLC 0.9.8a allows remote attackers to cause a denial of service (stack consumption and crash) via a long input argument in an in_play action.
CVE-2008-5276
- EPSS 7.67%
- Veröffentlicht 03.12.2008 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in the ReadRealIndex function in real.c in the Real demuxer plugin in VideoLAN VLC media player 0.9.0 through 0.9.7 allows remote attackers to execute arbitrary code via a malformed RealMedia (.rm) file that triggers a heap-based buf...
CVE-2008-5036
- EPSS 66.45%
- Veröffentlicht 10.11.2008 22:18:34
- Zuletzt bearbeitet 09.04.2025 00:30:58
Stack-based buffer overflow in VideoLAN VLC media player 0.9.x before 0.9.6 might allow user-assisted attackers to execute arbitrary code via an an invalid RealText (rt) subtitle file, related to the ParseRealText function in modules/demux/subtitle.c...
CVE-2008-5032
- EPSS 17.98%
- Veröffentlicht 10.11.2008 16:15:12
- Zuletzt bearbeitet 09.04.2025 00:30:58
Stack-based buffer overflow in VideoLAN VLC media player 0.5.0 through 0.9.5 might allow user-assisted attackers to execute arbitrary code via the header of an invalid CUE image file, related to modules/access/vcd/cdrom.c. NOTE: this identifier orig...
CVE-2008-4686
- EPSS 7.75%
- Veröffentlicht 22.10.2008 18:00:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple integer overflows in ty.c in the TY demux plugin (aka the TiVo demuxer) in VideoLAN VLC media player, probably 0.9.4, might allow remote attackers to execute arbitrary code via a crafted .ty file, a different vulnerability than CVE-2008-4654...