LWN.net Logo

vlc: multiple vulnerabilities

Package(s):vlc CVE #(s):CVE-2008-2147 CVE-2008-2430
Created:August 1, 2008 Updated:June 18, 2009
Description: From the Gentoo advisory: Remi Denis-Courmont reported that VLC loads plugins from the current working directory in an unsafe manner (CVE-2008-2147). Alin Rad Pop (Secunia Research) reported an integer overflow error in the Open() function in the file modules/demux/wav.c (CVE-2008-2430).
Alerts:
Debian DSA-1819-1 2009-06-18
Gentoo 200807-13 2008-07-31

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds