Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple format string vulnerabilities in plugins in VideoLAN VLC Media Player before 0.8.6c allow remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in (1) an Ogg/Vorbis file, (2) an Ogg/Theora file, (3) a CDDB entry for a CD Digital Audio (CDDA) file, or (4) Service Announce Protocol (SAP) multicast packets.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
VLC媒体播放器多个插件格式串处理漏洞
Vulnerability Description
VideoLAN VLC media player是法国VideoLAN组织开发的一款免费、开源的跨平台多媒体播放器(也是一个多媒体框架)。该产品支持播放多种介质(文件、光盘等)、多种音视频格式(WMV, MP3等)等。 VLC媒体播放器的Ogg/Vorbis、Ogg/Theora、CDDA(CD数字音频)和SAP(服务声明协议)插件在试图解析媒体数据流时存在C类型的格式串漏洞。input.c文件中的input_vaControl函数使用外部提供的格式串调用了vasprintf(),这可能导致执行任意代码
CVSS Information
N/A
Vulnerability Type
N/A