Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Gentoo: GLSA-200701-24 Normal: VLC Media Player Execution Threat

gentoo
Calendar Grey January 26, 2007
Dist Gentoo Esm H88
The VLC media player on Gentoo presents a format string vulnerability, which could lead to arbitrary code execution with moderate risk.
VLC media player improperly handles format strings, allowing for the execution of arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200701-24 https://security.gentoo.org/ Severity: Normal Title: VLC media player: Format string vulnerability Date: January 26, 2007 Bugs: #159845 ID: 200701-24

Synopsis ======= VLC media player improperly handles format strings, allowing for the execution of arbitrary code.
Background ========= VLC media player is a multimedia player for various audio and video formats.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-video/vlc < 0.8.6-r1 >= 0.8.6-r1
========== Kevin Finisterre has discovered that when handling media locations, various functions throughout VLC media player make improper use of format strings.
Impact =...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here