VLC Media Player Multiple Format String Vulnerabilities
BID:24555
Info
VLC Media Player Multiple Format String Vulnerabilities
| Bugtraq ID: | 24555 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-3316 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 20 2007 12:00AM |
| Updated: | Dec 18 2007 08:05PM |
| Credit: | David Thiel of iSEC Partners Inc reported the issue in the Ogg/Vorbis. Other issues were reported by the vendor. |
| Vulnerable: |
VideoLAN VLC media player 0.8.6 VideoLAN VLC media player 0.8.6b VideoLAN VLC media player 0.8.6a Gentoo Linux Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia-64 Debian Linux 3.1 ia-32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia-64 Debian Linux 4.0 ia-32 Debian Linux 4.0 hppa Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0 |
| Not Vulnerable: |
VideoLAN VLC media player 0.8.6c |
Discussion
VLC Media Player Multiple Format String Vulnerabilities
VLC media player is affected by multiple format-string vulnerabilities.
Exploiting these issues can allow remote attackers to execute arbitrary code in the context of the application.
Versions prior to VLC media player 0.8.6c are affected.
VLC media player is affected by multiple format-string vulnerabilities.
Exploiting these issues can allow remote attackers to execute arbitrary code in the context of the application.
Versions prior to VLC media player 0.8.6c are affected.
Exploit / POC
VLC Media Player Multiple Format String Vulnerabilities
UPDATE: Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
UPDATE (December 17, 2007): Core Security Technologies has added Linux support to its existing CORE IMPACT exploit. This exploit is not otherwise publicly available or known to be circulating in the wild.
UPDATE: Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
UPDATE (December 17, 2007): Core Security Technologies has added Linux support to its existing CORE IMPACT exploit. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
VLC Media Player Multiple Format String Vulnerabilities
Solution:
Please see the referenced vendor advisories for information on updates.
VideoLAN VLC media player 0.8.6a
VideoLAN VLC media player 0.8.6b
Solution:
Please see the referenced vendor advisories for information on updates.
VideoLAN VLC media player 0.8.6a
-
VideoLAN VLC 0.8.6c
http://www.videolan.org/vlc/
VideoLAN VLC media player 0.8.6b
-
VideoLAN VLC 0.8.6c
http://www.videolan.org/vlc/
References
VLC Media Player Multiple Format String Vulnerabilities
References:
References: