Show filters
27 Total Results
Displaying 1-10 of 27
Sort by:
Attacker Value
Unknown

CVE-2011-3623

Disclosure Date: December 26, 2014 (last updated October 05, 2023)
Multiple stack-based buffer overflows in VideoLAN VLC media player before 1.0.2 allow remote attackers to execute arbitrary code via (1) a crafted ASF file, related to the ASF_ObjectDumpDebug function in modules/demux/asf/libasf.c; (2) a crafted AVI file, related to the AVI_ChunkDumpDebug_level function in modules/demux/avi/libavi.c; or (3) a crafted MP4 file, related to the __MP4_BoxDumpStructure function in modules/demux/mp4/libmp4.c.
0
Attacker Value
Unknown

CVE-2010-1442

Disclosure Date: December 26, 2014 (last updated October 05, 2023)
VideoLAN VLC media player before 1.0.6 allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly execute arbitrary code via a crafted byte stream to the (1) AVI, (2) ASF, or (3) Matroska (aka MKV) demuxer.
0
Attacker Value
Unknown

CVE-2010-1445

Disclosure Date: December 26, 2014 (last updated October 05, 2023)
Heap-based buffer overflow in VideoLAN VLC media player before 1.0.6 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted byte stream in an RTMP session.
0
Attacker Value
Unknown

CVE-2010-1441

Disclosure Date: December 26, 2014 (last updated October 05, 2023)
Multiple heap-based buffer overflows in VideoLAN VLC media player before 1.0.6 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted byte stream to the (1) A/52, (2) DTS, or (3) MPEG Audio decoder.
0
Attacker Value
Unknown

CVE-2010-1443

Disclosure Date: December 26, 2014 (last updated October 05, 2023)
The parse_track_node function in modules/demux/playlist/xspf.c in the XSPF playlist parser in VideoLAN VLC media player before 1.0.6 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an empty location element in an XML Shareable Playlist Format (XSPF) document.
0
Attacker Value
Unknown

CVE-2010-1444

Disclosure Date: December 26, 2014 (last updated October 05, 2023)
The ZIP archive decompressor in VideoLAN VLC media player before 1.0.6 allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly execute arbitrary code via a crafted archive.
0
Attacker Value
Unknown

CVE-2010-2062

Disclosure Date: December 26, 2014 (last updated October 05, 2023)
Integer underflow in the real_get_rdt_chunk function in real.c, as used in modules/access/rtsp/real.c in VideoLAN VLC media player before 1.0.1 and stream/realrtsp/real.c in MPlayer before r29447, allows remote attackers to execute arbitrary code via a crafted length value in an RDT chunk header.
0
Attacker Value
Unknown

CVE-2013-7340

Disclosure Date: March 21, 2014 (last updated October 05, 2023)
VideoLAN VLC Media Player before 2.0.7 allows remote attackers to cause a denial of service (memory consumption) via a crafted playlist file.
0
Attacker Value
Unknown

CVE-2012-0023

Disclosure Date: October 30, 2012 (last updated October 05, 2023)
Double free vulnerability in the get_chunk_header function in modules/demux/ty.c in VideoLAN VLC media player 0.9.0 through 1.1.12 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TiVo (TY) file.
0
Attacker Value
Unknown

CVE-2012-3377

Disclosure Date: July 12, 2012 (last updated October 04, 2023)
Heap-based buffer overflow in the Ogg_DecodePacket function in the OGG demuxer (modules/demux/ogg.c) in VideoLAN VLC media player before 2.0.2 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted OGG file.
0