VideoLAN VLC for Mobile CVE-2018-19937 Local Security Bypass Vulnerability
BID:106662
Info
VideoLAN VLC for Mobile CVE-2018-19937 Local Security Bypass Vulnerability
| Bugtraq ID: | 106662 |
| Class: | Design Error |
| CVE: |
CVE-2018-19937 |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 31 2018 12:00AM |
| Updated: | Dec 31 2018 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
VideoLAN VLC for Mobile 3.1.4 VideoLAN VLC for Mobile 3.1.3 VideoLAN VLC for Mobile 3.1.2 VideoLAN VLC for Mobile 3.1.1 VideoLAN VLC for Mobile 3.1 VideoLAN VLC for Mobile 3.0.3 |
| Not Vulnerable: |
VideoLAN VLC for Mobile 3.1.5 |
Discussion
VideoLAN VLC for Mobile CVE-2018-19937 Local Security Bypass Vulnerability
VideoLAN VLC for Mobile is prone to a local security-bypass vulnerability.
Attackers with physical access to the device can exploit this issue to bypass certain security restrictions and perform unauthorized actions; this may aid in launching further attacks.
Versions prior to VideoLAN VLC for Mobile 3.1.5 are vulnerable.
VideoLAN VLC for Mobile is prone to a local security-bypass vulnerability.
Attackers with physical access to the device can exploit this issue to bypass certain security restrictions and perform unauthorized actions; this may aid in launching further attacks.
Versions prior to VideoLAN VLC for Mobile 3.1.5 are vulnerable.