Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In VideoLAN VLC media player through 2.2.8, there is a type conversion vulnerability in modules/demux/mp4/libmp4.c in the MP4 demux module leading to a invalid free, because the type of a box may be changed between a read operation and a free operation.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
VideoLAN VLC media player MP4 demux模块安全漏洞
Vulnerability Description
VideoLAN VLC media player是法国VideoLAN组织开发的一款免费、开源的跨平台多媒体播放器(也是一个多媒体框架)。该产品支持播放多种介质(文件、光盘等)、多种音视频格式(WMV, MP3等)等。MP4 demux module是其中的一个多路分配器模块。 VideoLAN VLC media player 2.2.8及之前的版本中的MP4 demux模块的modules/demux/mp4/libmp4.c文件存在安全漏洞。攻击者可利用该漏洞造成无效释放。
CVSS Information
N/A
Vulnerability Type
N/A