Thursday, July 3, 2008

Vulnerability in VLC Media Player

There has been found a vulnerability in VLC Media Player. Vulnerability is related to integer overflow that may occur when specifically crafted WAV file is opened. Successful exploitation may allow execution of arbitrary code.

Vulnerability is confirmed in version 0.8.6h but also previous versions may be affected.

Vulnerability is fixed in an upcoming version 0.8.6i. Meanwhile, it's recommended to not open unknown WAV files.

No comments: