Known Vulnerabilities for products from Videolan

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Videolan".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-25804 A NULL-pointer dereference in "Open" in avi.c of VideoLAN VLC Media Player 3.0.11 can a denial of service (DOS) in the applic... 7.5 - HIGH 2021-07-26 2021-08-04
CVE-2021-25803 A buffer overflow vulnerability in the vlc_input_attachment_New component of VideoLAN VLC Media Player 3.0.11 allows attacker... 7.1 - HIGH 2021-07-26 2022-05-03
CVE-2021-25802 A buffer overflow vulnerability in the AVI_ExtractSubtitle component of VideoLAN VLC Media Player 3.0.11 allows attackers to ... 7.1 - HIGH 2021-07-26 2022-05-03
CVE-2021-25801 A buffer overflow vulnerability in the __Parse_indx component of VideoLAN VLC Media Player 3.0.11 allows attackers to cause a... 7.1 - HIGH 2021-07-26 2022-05-03
CVE-2020-26664 A vulnerability in EbmlTypeDispatcher::send in VideoLAN VLC media player 3.0.11 allows attackers to trigger a heap-based buff... 7.8 - HIGH 2021-01-08 2023-02-03
CVE-2020-13428 A heap-based buffer overflow in the hxxx_AnnexB_to_xVC function in modules/packetizer/hxxx_nal.c in VideoLAN VLC media player... 7.8 - HIGH 2020-06-08 2023-11-07
CVE-2019-19721 An off-by-one error in the DecodeBlock function in codec/sdl_image.c in VideoLAN VLC media player before 3.0.9 allows remote ... 7.8 - HIGH 2020-05-15 2023-11-07
CVE-2019-18278 When executing VideoLAN VLC media player 3.0.8 with libqt on Windows, Data from a Faulting Address controls Code Flow startin... 7.8 - HIGH 2019-10-23 2020-08-24
CVE-2019-14970 A vulnerability in mkv::event_thread_t in VideoLAN VLC media player 3.0.7.1 allows remote attackers to trigger a heap-based b... 7.8 - HIGH 2019-08-29 2020-08-24
CVE-2019-14778 The mkv::virtual_segment_c::seek method of demux/mkv/virtual_segment.cpp in VideoLAN VLC media player 3.0.7.1 has a use-after... 7.8 - HIGH 2019-08-29 2020-08-18
CVE-2019-14777 The Control function of demux/mkv/mkv.cpp in VideoLAN VLC media player 3.0.7.1 has a use-after-free. 7.8 - HIGH 2019-08-29 2020-08-18
CVE-2019-14776 A heap-based buffer over-read exists in DemuxInit() in demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1 via a crafted .mk... 7.8 - HIGH 2019-08-29 2020-08-18
CVE-2019-14535 A divide-by-zero error exists in the SeekIndex function of demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1. As a result,... 7.8 - HIGH 2019-08-29 2020-08-18
CVE-2019-14534 In VideoLAN VLC media player 3.0.7.1, there is a NULL pointer dereference at the function SeekPercent of demux/asf/asf.c that... 5.5 - MEDIUM 2019-08-29 2020-08-18
CVE-2019-14533 The Control function of demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1 has a use-after-free. 7.8 - HIGH 2019-08-29 2020-08-18
CVE-2019-14498 A divide-by-zero error exists in the Control function of demux/caf.c in VideoLAN VLC media player 3.0.7.1. As a result, an FP... 7.8 - HIGH 2019-08-29 2020-08-18
CVE-2019-14438 A heap-based buffer over-read in xiph_PackHeaders() in modules/demux/xiph.h in VideoLAN VLC media player 3.0.7.1 allows remot... 7.8 - HIGH 2019-08-29 2020-08-18
CVE-2019-14437 The xiph_SplitHeaders function in modules/demux/xiph.h in VideoLAN VLC media player 3.0.7.1 does not check array bounds prope... 7.8 - HIGH 2019-08-29 2020-08-24
CVE-2019-13962 lavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VLC media player through 3.0.7 has a heap-based buffer over-rea... 9.8 - CRITICAL 2019-07-18 2023-11-07
CVE-2019-13615 libebml before 1.3.6, as used in the MKV module in VideoLAN VLC Media Player binaries before 3.0.3, has a heap-based buffer o... 5.5 - MEDIUM 2019-07-16 2020-08-24

Known software with vulnerabilities from Videolan

Type Vendor Product Version
ApplicationVideolanLibbluray-
ApplicationVideolanVlc2.1.4
ApplicationVideolanVlc For Mobile2.7.8
ApplicationVideolanVlc Media Player-