VLC Media Player 'smb://' URI Handling Remote Buffer Overflow Vulnerability

VLC Media Player is prone to a remote stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data.

Attackers could exploit this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely cause denial-of-service conditions.

VLC Media Player 0.9.9 through 1.0.1 for Windows are vulnerable; other versions may also be affected.


 

Privacy Statement
Copyright 2010, SecurityFocus