Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

VLC Media Player < 1.1.7 Code Execution Vulnerability (deprecated)

High

Synopsis

The remote host contains an application that allows arbitrary code execution.

Description

The remote host contains VLC player, a multi-media application.

Versions of VLC media player earlier than 1.1.7 are potentially affected by a code execution vulnerability due to insufficient input validation when parsing a specially crafted Matroska or WebM (MKV) file.

Solution

Upgrade to VLC Media Player version 1.1.7 or later.