Breaking News

PNY Unveils CS3250 M.2 NVMe PCIe Gen5 x4 SSD Arx 500 White ARGB – compact form and full performance from ENDORFY CORSAIR releases Top-of-class PCIe 5.0 SSD and Adds 4TB option in M.2 2242 size CASIO G-SHOCK Expands Its Premium Lineup with Two New Flagship Releases ADATA Launches World's First Two-in-one External SSD Integrated with Power Bank Module

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

Vulnerability Affects Latest VLC Media Player

Vulnerability Affects Latest VLC Media Player

Enterprise & IT Jan 31,2013 0

VideoLAN warned users of the v2.0.5 and earlier versions of the VLC media player that the software contain a critical vulnerability that can be potentially exploited by attackers to execute malicious code on computers. According to the non-profit organization that develops the popular media player, the vulnerability is located in the VLC component responsible for playing ASF (Advanced Streaming Format) video files. "When parsing a specially crafted ASF movie, a buffer overflow might occur," VideoLAN wrote in a security advisor.

If successful, a malicious third party could trigger an invalid memory access, leading to a crash of VLC media player's process. In some cases attackers might exploit this issue to execute arbitrary code within the context of the application, although that has not been confirmed yet.

The issue is addressed in VLC media player 2.0.x source code repository by replacing a macro with a static inline and improved bounds checking, VideoLAN said. This patch is included in VLC's future 2.0.6 release, the next version of the media player, which is only available for testing purposes at the moment.

An alternative solution is to manually delete the vulnerable libasf_plugin.dll file from the VLC installation directory, VideoLAN said. This will disable the software's ability to play ASF videos.

Tags:
Previous Post
Toshiba Is Samplpling New 8-Megapixel CMOS Image Sensor
Next Post
Samsung Showcases Its Future Commercial Displays at ISE 2013

Related Posts

Latest News

PNY Unveils CS3250 M.2 NVMe PCIe Gen5 x4 SSD
PC components

PNY Unveils CS3250 M.2 NVMe PCIe Gen5 x4 SSD

Arx 500 White ARGB – compact form and full performance from ENDORFY
Cooling Systems

Arx 500 White ARGB – compact form and full performance from ENDORFY

CORSAIR releases Top-of-class PCIe 5.0 SSD and Adds 4TB option in M.2 2242 size
PC components

CORSAIR releases Top-of-class PCIe 5.0 SSD and Adds 4TB option in M.2 2242 size

 CASIO G-SHOCK Expands Its Premium Lineup with Two New Flagship Releases
Consumer Electronics

CASIO G-SHOCK Expands Its Premium Lineup with Two New Flagship Releases

ADATA Launches World's First Two-in-one External SSD Integrated with Power Bank Module
Consumer Electronics

ADATA Launches World's First Two-in-one External SSD Integrated with Power Bank Module

Popular Reviews

be quiet! Dark Mount Keyboard

be quiet! Dark Mount Keyboard

Terramaster F8-SSD

Terramaster F8-SSD

be quiet! Light Mount Keyboard

be quiet! Light Mount Keyboard

be quiet! Pure Base 501

be quiet! Pure Base 501

Soundpeats Pop Clip

Soundpeats Pop Clip

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

Noctua NF-A12x25 G2 fans

Noctua NF-A12x25 G2 fans

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed