Show filters
127 Total Results
Displaying 91-100 of 127
Sort by:
Attacker Value
Unknown

CVE-2010-3275

Disclosure Date: March 28, 2011 (last updated October 04, 2023)
libdirectx_plugin.dll in VideoLAN VLC Media Player before 1.1.8 allows remote attackers to execute arbitrary code via a crafted width in an AMV file, related to a "dangling pointer vulnerability."
0
Attacker Value
Unknown

CVE-2011-0522

Disclosure Date: February 07, 2011 (last updated October 04, 2023)
The StripTags function in (1) the USF decoder (modules/codec/subtitles/subsdec.c) and (2) the Text decoder (modules/codec/subtitles/subsusf.c) in VideoLAN VLC Media Player 1.1 before 1.1.6-rc allows remote attackers to execute arbitrary code via a subtitle with an opening "<" without a closing ">" in an MKV file, which triggers heap memory corruption, as demonstrated using refined-australia-blu720p-sample.mkv.
0
Attacker Value
Unknown

CVE-2011-0531

Disclosure Date: February 07, 2011 (last updated October 04, 2023)
demux/mkv/mkv.hpp in the MKV demuxer plugin in VideoLAN VLC media player 1.1.6.1 and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary commands via a crafted MKV (WebM or Matroska) file that triggers memory corruption, related to "class mismatching" and the MKV_IS_ID macro.
0
Attacker Value
Unknown

CVE-2011-0021

Disclosure Date: January 25, 2011 (last updated October 04, 2023)
Multiple heap-based buffer overflows in cdg.c in the CDG decoder in VideoLAN VLC Media Player before 1.1.6 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted CDG video.
0
Attacker Value
Unknown

CVE-2010-3907

Disclosure Date: January 03, 2011 (last updated October 04, 2023)
Multiple integer overflows in real.c in the Real demuxer plugin in VideoLAN VLC Media Player before 1.1.6 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a zero i_subpackets value in a Real Media file, leading to a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2010-3124

Disclosure Date: August 26, 2010 (last updated October 04, 2023)
Untrusted search path vulnerability in bin/winvlc.c in VLC Media Player 1.1.3 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse wintab32.dll that is located in the same folder as a .mp3 file.
0
Attacker Value
Unknown

CVE-2010-2937

Disclosure Date: August 20, 2010 (last updated October 04, 2023)
The ReadMetaFromId3v2 function in taglib.cpp in the TagLib plugin in VideoLAN VLC media player 0.9.0 through 1.1.2 does not properly process ID3v2 tags, which allows remote attackers to cause a denial of service (application crash) via a crafted media file.
0
Attacker Value
Unknown

CVE-2010-0364

Disclosure Date: January 21, 2010 (last updated October 04, 2023)
Stack-based buffer overflow in VideoLAN VLC Media Player 0.8.6 allows user-assisted remote attackers to execute arbitrary code via an ogg file with a crafted Advanced SubStation Alpha Subtitle (.ass) file, probably involving the Dialogue field.
0
Attacker Value
Unknown

CVE-2009-2484

Disclosure Date: July 16, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in the Win32AddConnection function in modules/access/smb.c in VideoLAN VLC media player 0.9.9, when running on Microsoft Windows, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long smb URI in a playlist file.
0
Attacker Value
Unknown

CVE-2009-1045

Disclosure Date: March 23, 2009 (last updated October 04, 2023)
requests/status.xml in VLC 0.9.8a allows remote attackers to cause a denial of service (stack consumption and crash) via a long input argument in an in_play action.
0