Related Vulnerabilities: CVE-2019-13615  

A heap-based out-of-bounds read has been found in the mkv::demux_sys_t::FreeUnused() function of VLC <= 3.0.7.1.

Severity Medium

Remote Yes

Type Information disclosure

Description

A heap-based out-of-bounds read has been found in the mkv::demux_sys_t::FreeUnused() function of VLC <= 3.0.7.1.

AVG-1008 vlc 3.0.7.1-2 Medium Vulnerable

https://trac.videolan.org/vlc/ticket/22474