icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons_061

VLC Media Player < 1.0.1 Remote Integer Underflow

Medium

Synopsis

The remote host contains an application that is affected by an integer underflow vulnerability.

Description

The version of VLC media player installed on the remote host is earlier than 1.0.1. Such versions contain a flaw in the 'modules/access/rtsp/real.c' file of VLC Player. If an attacker can trick a user into opening a specially crafted RDT data stream, he may be able to execute arbitrary code within the context of the affected application.

Solution

Upgrade to VLC Media Player 1.0.1 or later.