2021-01-08
|
CVE-2020-26664
|
A vulnerability in EbmlTypeDispatcher::send in VideoLAN VLC media player 3.0.11 allows attackers to trigger a heap-based buffer overflow via a crafted .mkv file.
|
Vlc_media_player
|
7.8
|
|
|
2018-05-28
|
CVE-2018-11516
|
The vlc_demux_chained_Delete function in input/demux_chained.c in VideoLAN VLC media player 3.0.1 allows remote attackers to cause a denial of service (heap corruption and application crash) or possibly have unspecified other impact via a crafted .swf file.
|
Vlc_media_player
|
8.8
|
|
|
2019-08-29
|
CVE-2019-14970
|
A vulnerability in mkv::event_thread_t in VideoLAN VLC media player 3.0.7.1 allows remote attackers to trigger a heap-based buffer overflow via a crafted .mkv file.
|
Debian_linux, Vlc_media_player
|
7.8
|
|
|
2019-08-29
|
CVE-2019-14778
|
The mkv::virtual_segment_c::seek method of demux/mkv/virtual_segment.cpp in VideoLAN VLC media player 3.0.7.1 has a use-after-free.
|
Debian_linux, Vlc_media_player
|
7.8
|
|
|
2019-08-29
|
CVE-2019-14777
|
The Control function of demux/mkv/mkv.cpp in VideoLAN VLC media player 3.0.7.1 has a use-after-free.
|
Debian_linux, Vlc_media_player
|
7.8
|
|
|
2019-08-29
|
CVE-2019-14776
|
A heap-based buffer over-read exists in DemuxInit() in demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1 via a crafted .mkv file.
|
Debian_linux, Vlc_media_player
|
7.8
|
|
|
2019-08-29
|
CVE-2019-14535
|
A divide-by-zero error exists in the SeekIndex function of demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1. As a result, an FPE can be triggered via a crafted WMV file.
|
Debian_linux, Vlc_media_player
|
7.8
|
|
|
2019-08-29
|
CVE-2019-14534
|
In VideoLAN VLC media player 3.0.7.1, there is a NULL pointer dereference at the function SeekPercent of demux/asf/asf.c that will lead to a denial of service attack.
|
Debian_linux, Vlc_media_player
|
5.5
|
|
|
2019-08-29
|
CVE-2019-14533
|
The Control function of demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1 has a use-after-free.
|
Debian_linux, Vlc_media_player
|
7.8
|
|
|
2019-08-29
|
CVE-2019-14498
|
A divide-by-zero error exists in the Control function of demux/caf.c in VideoLAN VLC media player 3.0.7.1. As a result, an FPE can be triggered via a crafted CAF file.
|
Debian_linux, Vlc_media_player
|
7.8
|
|
|