Lucene search

K
nessusTenable801176.PRM
HistoryMar 21, 2012 - 12:00 a.m.

VLC Media Player < 2.0.1 Multiple Code Execution Vulnerabilities

2012-03-2100:00:00
Tenable
www.tenable.com
14

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.965

Percentile

99.6%

The remote host contains VLC player, a multi-media application.

Versions of VLC media player earlier than 2.0.1 are potentially affected by multiple vulnerabilities :

  • A stack overflow exists in MMS support. (CVE-2012-1775)

  • Multiple heap overflows exist in Real RTSP support. (CVE-2012-1776)

Binary data 801176.prm

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.965

Percentile

99.6%