[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Heap-based buffer overflow vulnerability in VLC media player - CVE-2020-13428 (Mac OS X)

ID: oval:org.secpod.oval:def:99720Date: (C)2024-05-03   (M)2024-05-03
Class: VULNERABILITYFamily: macos




The host is installed with VideoLAN VLC media player through 3.0.11 and is prone to a heap-based buffer overflow vulnerability. A flaw is present in the application, which fails to properly handle issues in the hxxx_AnnexB_to_xVC function in modules/packetizer/hxxx_nal.c. Successful exploitation could leads to a denial of service or execute arbitrary code via a crafted H.264 Annex-B video (.avi for example) file.

Platform:
Apple Mac OS 14
Apple Mac OS 13
Apple Mac OS 12
Apple Mac OS 11
Apple Mac OS X 10.15
Apple Mac OS X 10.10
Apple Mac OS X 10.11
Apple Mac OS X 10.12
Apple Mac OS X 10.13
Apple Mac OS X 10.14
Product:
VLC Media Player
Reference:
CVE-2020-13428
CVE    1
CVE-2020-13428

© SecPod Technologies