Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-62884
HistoryJul 27, 2021 - 12:00 a.m.

VideoLAN VLC Buffer Overflow Vulnerability (CNVD-2021-62884)

2021-07-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
6

0.001 Low

EPSS

Percentile

31.9%

VideoLAN VLC is an open source cross-platform multimedia player and framework that can play most multimedia files, as well as DVDs, audio CDs, VCDs, and various streaming protocols. a buffer overflow vulnerability exists in the AVI_ExtractSubtitle component of VideoLAN VLC version 3.0.11, which can be exploited by attackers via specially crafted .avi files to cause out-of-bounds reads.

CPENameOperatorVersion
videolan vlceq3.0.11