9.3
CVSSv2

CVE-2008-5032

Published: 10/11/2008 Updated: 07/11/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in VideoLAN VLC media player 0.5.0 up to and including 0.9.5 might allow user-assisted malicious users to execute arbitrary code via the header of an invalid CUE image file, related to modules/access/vcd/cdrom.c. NOTE: this identifier originally included an issue related to RealText, but that issue has been assigned a separate identifier, CVE-2008-5036.

Vulnerable Product Search on Vulmon Subscribe to Product

videolan vlc media player 0.8.6b

videolan vlc media player 0.7.2

videolan vlc media player 0.8.6g

videolan vlc media player 0.5.0

videolan vlc media player 0.8.4a

videolan vlc media player 0.8.0

videolan vlc media player 0.8.4

videolan vlc media player 0.7.1a

videolan vlc media player 0.9.0

videolan vlc media player 0.9.4

videolan vlc media player 0.8.5

videolan vlc media player 0.6.2

videolan vlc media player 0.8.6h

videolan vlc media player 0.8.6

videolan vlc media player 0.8.6c

videolan vlc media player 0.8.6i

videolan vlc media player 0.7.0

videolan vlc media player 0.9.1

videolan vlc media player 0.5.3

videolan vlc media player 0.8.6a

videolan vlc media player 0.9.5

videolan vlc media player 0.6.0

videolan vlc media player 0.8.6f

videolan vlc media player 0.9.2

videolan vlc media player 0.9

videolan vlc media player 0.8.1

videolan vlc media player 0.8.6e

videolan vlc media player 0.8.6d

videolan vlc media player 0.7.1

videolan vlc media player 0.8.2

videolan vlc media player 0.9.3

Vendor Advisories

Several vulnerabilities have been discovered in vlc, a multimedia player and streamer The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2008-1768 Drew Yao discovered that multiple integer overflows in the MP4 demuxer, Real demuxer and Cinepak codec can lead to the execution of arbitrary code CVE-2008-1769 Dr ...

Exploits

#!/usr/bin/env python #################################################################################### # # VLC Media Player < 096 (CUE) Buffer Overflow PoC # Found By: Dr_IDE # Tested On: XPSP3 # #################################################################################### head = ("\x46\x49\x4c\x45\x20\x22") buff = ("\x41" * 1000 ...