VideoLAN VLC media player是法国VideoLAN组织开发的一款免费、开源的跨平台多媒体播放器(也是一个多媒体框架)。该产品支持播放多种介质(文件、光盘等)、多种音视频格式(WMV, MP3等)等。 VideoLAN VLC媒体播放器1.1.6.1及之前版本中的MKV分离器插件中的demux/mkv/mkv.hpp中存在输入验证漏洞。远程攻击者可以借助可触发内存破坏的特制MKV(WebM或者Matroska)文件导致拒绝服务(崩溃)并执行任意命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2010-4506 | Oracle Passlogix v-GO Self-Service Password Reset和OEM加密问题漏洞 | |
| CVE-2011-0323 | Topaz Systems SigPlus Pro ActiveX Control多个远程代码执行漏洞 | |
| CVE-2011-0324 | Topaz Systems SigPlus Pro ActiveX Control多个堆缓冲区溢出漏洞 | |
| CVE-2011-0522 | VideoLAN VLC媒体播放器StripTags函数缓冲区溢出漏洞 | |
| CVE-2011-0899 | Drupal AES加密模块权限提升漏洞 | |
| CVE-2011-0900 | Terminal Server Client tsc_launch_remote函数栈缓冲区溢出漏洞 | |
| CVE-2011-0901 | Terminal Server Client tsc_launch_remote函数多个栈缓冲区溢出漏洞 | |
| CVE-2011-0902 | Sun Microsystems SunScreen Firewall Java Service多个不可信搜索路径漏洞 | |
| CVE-2011-0903 | Awcm-Cms AR Web Content Manager Cookie参数多个本地目录遍历漏洞 |
No comments yet