Show filters
170 Total Results
Displaying 81-90 of 170
Sort by:
Attacker Value
Unknown

CVE-2011-2949

Disclosure Date: August 18, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5 allows remote attackers to execute arbitrary code via crafted ID3v2 tags in an MP3 file.
0
Attacker Value
Unknown

CVE-2011-2588

Disclosure Date: July 27, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in the AVI_ChunkRead_strf function in libavi.c in the AVI demuxer in VideoLAN VLC media player before 1.1.11 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted AVI media file.
0
Attacker Value
Unknown

CVE-2011-1931

Disclosure Date: July 07, 2011 (last updated October 04, 2023)
sp5xdec.c in the Sunplus SP5X JPEG decoder in libavcodec in FFmpeg before 0.6.3 and libav through 0.6.2, as used in VideoLAN VLC media player 1.1.9 and earlier and other products, performs a write operation outside the bounds of an unspecified array, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a malformed AMV file.
0
Attacker Value
Unknown

CVE-2011-2194

Disclosure Date: June 24, 2011 (last updated October 04, 2023)
Integer overflow in the XSPF playlist parser in VideoLAN VLC media player 0.8.5 through 1.1.9 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors that trigger a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2011-1684

Disclosure Date: May 03, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in the MP4_ReadBox_skcr function in libmp4.c in the MP4 demultiplexer in VideoLAN VLC media player 1.x before 1.1.9 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted MP4 file.
0
Attacker Value
Unknown

CVE-2011-1426

Disclosure Date: April 18, 2011 (last updated October 04, 2023)
The OpenURLInDefaultBrowser method in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.2, and RealPlayer SP 1.0 through 1.1.5, launches a default handler for the filename specified in the first argument, which allows remote attackers to execute arbitrary code via a .rnx filename corresponding to a crafted RNX file.
0
Attacker Value
Unknown

CVE-2010-3276

Disclosure Date: March 28, 2011 (last updated October 04, 2023)
libdirectx_plugin.dll in VideoLAN VLC Media Player before 1.1.8 allows remote attackers to execute arbitrary code via a crafted width in an NSV file.
0
Attacker Value
Unknown

CVE-2010-3275

Disclosure Date: March 28, 2011 (last updated October 04, 2023)
libdirectx_plugin.dll in VideoLAN VLC Media Player before 1.1.8 allows remote attackers to execute arbitrary code via a crafted width in an AMV file, related to a "dangling pointer vulnerability."
0
Attacker Value
Unknown

CVE-2011-0694

Disclosure Date: February 21, 2011 (last updated October 04, 2023)
RealNetworks RealPlayer 11.0 through 11.1, SP 1.0 through 1.1.5, and 14.0.0 through 14.0.1, and Enterprise 2.0 through 2.1.4, uses predictable names for temporary files, which allows remote attackers to conduct cross-domain scripting attacks and execute arbitrary code via the OpenURLinPlayerBrowser function.
0
Attacker Value
Unknown

CVE-2011-0531

Disclosure Date: February 07, 2011 (last updated October 04, 2023)
demux/mkv/mkv.hpp in the MKV demuxer plugin in VideoLAN VLC media player 1.1.6.1 and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary commands via a crafted MKV (WebM or Matroska) file that triggers memory corruption, related to "class mismatching" and the MKV_IS_ID macro.
0