Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-62885
HistoryJul 27, 2021 - 12:00 a.m.

VideoLAN VLC Buffer Overflow Vulnerability

2021-07-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
9

0.001 Low

EPSS

Percentile

32.1%

VideoLAN VLC is an open source cross-platform multimedia player and framework for playing most multimedia files, as well as DVDs, audio CDs, VCDs and various streaming protocols. vlc_input_attachment_New component in VideoLAN VLC version 3.0.11 is vulnerable to buffer overflow, which can be exploited by attackers via specially crafted . avi file to cause an out-of-bounds read.

CPENameOperatorVersion
videolan vlceq3.0.11