Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
videolan vlc media player vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2014-9743
Cross-site scripting (XSS) vulnerability in the httpd_HtmlError function in network/httpd.c in the web interface in VideoLAN VLC Media Player prior to 2.2.0 allows remote malicious users to inject arbitrary web script or HTML via the path info.
Videolan Vlc Media Player
7.8
CVSSv3
CVE-2014-9626
Integer underflow in the MP4_ReadBox_String function in modules/demux/mp4/libmp4.c in VideoLAN VLC media player prior to 2.1.6 allows remote malicious users to cause a denial of service or possibly have unspecified other impact via a box size less than 7.
Videolan Vlc Media Player
NA
CVE-2015-5949
VideoLAN VLC media player 2.2.1 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted 3GP file, which triggers the freeing of arbitrary pointers.
Videolan Vlc Media Player
NA
CVE-2007-3467
Integer overflow in the __status_Update function in stats.c VideoLAN VLC Media Player prior to 0.8.6c allows remote malicious users to cause a denial of service (crash) via a WAV file with a large sample rate.
Videolan Vlc Media Player
NA
CVE-2007-3468
input.c in VideoLAN VLC Media Player prior to 0.8.6c allows remote malicious users to cause a denial of service (crash) via a crafted WAV file that causes an uninitialized i_nb_resamplers variable to be used.
Videolan Vlc Media Player
5.5
CVSSv3
CVE-2017-8313
Heap out-of-bound read in ParseJSS in VideoLAN VLC prior to 2.2.5 due to missing check of string termination allows malicious users to read data beyond allocated memory and potentially crash the process via a crafted subtitles file.
Videolan Vlc Media Player
NA
CVE-2008-0984
The MP4 demuxer (mp4.c) for VLC media player 0.8.6d and previous versions, as used in Miro Player 1.1 and previous versions, allows remote malicious users to overwrite arbitrary memory and execute arbitrary code via a malformed MP4 file.
Miro Miro Player
Videolan Vlc Media Player
1 EDB exploit
NA
CVE-2012-0904
VLC media player 1.1.11 allows remote malicious users to cause a denial of service (crash) via a long string in an amr file.
Videolan Vlc Media Player 1.1.11
1 EDB exploit
NA
CVE-2010-0364
Stack-based buffer overflow in VideoLAN VLC Media Player 0.8.6 allows user-assisted remote malicious users to execute arbitrary code via an ogg file with a crafted Advanced SubStation Alpha Subtitle (.ass) file, probably involving the Dialogue field.
Videolan Vlc Media Player 0.8.6
1 EDB exploit
NA
CVE-2007-0256
VideoLAN VLC 0.8.6a allows remote malicious users to cause a denial of service (application crash) via a crafted .wmv file.
Videolan Vlc Media Player 0.8.6a
2 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »