CVE-2011-1087

Buffer overflow in VideoLAN VLC media player 1.0.5 allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted .mp3 file that is played during bookmark creation.
Configurations

Configuration 1 (hide)

cpe:2.3:a:videolan:vlc_media_player:1.0.5:*:*:*:*:*:*:*

History

21 Nov 2024, 01:25

Type Values Removed Values Added
References () http://openwall.com/lists/oss-security/2011/03/02/3 - () http://openwall.com/lists/oss-security/2011/03/02/3 -
References () http://openwall.com/lists/oss-security/2011/03/03/8 - () http://openwall.com/lists/oss-security/2011/03/03/8 -
References () http://openwall.com/lists/oss-security/2011/03/03/9 - () http://openwall.com/lists/oss-security/2011/03/03/9 -
References () http://openwall.com/lists/oss-security/2011/03/28/7 - () http://openwall.com/lists/oss-security/2011/03/28/7 -
References () http://secunia.com/advisories/38853 - Vendor Advisory () http://secunia.com/advisories/38853 - Vendor Advisory
References () http://www.osvdb.org/62728 - () http://www.osvdb.org/62728 -
References () http://www.securityfocus.com/bid/38569 - Exploit () http://www.securityfocus.com/bid/38569 - Exploit
References () http://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4931.php - Exploit () http://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4931.php - Exploit
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14532 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14532 -

Information

Published : 2011-05-03 19:55

Updated : 2024-11-21 01:25


NVD link : CVE-2011-1087

Mitre link : CVE-2011-1087

CVE.ORG link : CVE-2011-1087


JSON object : View

Products Affected

videolan

  • vlc_media_player
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer