9.3
CVSSv2

CVE-2008-5276

Published: 03/12/2008 Updated: 07/11/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Integer overflow in the ReadRealIndex function in real.c in the Real demuxer plugin in VideoLAN VLC media player 0.9.0 up to and including 0.9.7 allows remote malicious users to execute arbitrary code via a malformed RealMedia (.rm) file that triggers a heap-based buffer overflow.

Vulnerable Product Search on Vulmon Subscribe to Product

videolan vlc media player 0.9.0

videolan vlc media player 0.9.4

videolan vlc media player 0.9.7

videolan vlc media player 0.9.1

videolan vlc media player 0.9.5

videolan vlc media player 0.9.8

videolan vlc media player 0.9.2

videolan vlc media player 0.9.3

videolan vlc media player 0.9.6