Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-9597

Опубликовано: 21 янв. 2015
Источник: debian

Описание

The picture_pool_Delete function in misc/picture_pool.c in VideoLAN VLC media player 2.1.5 allows remote attackers to execute arbitrary code or cause a denial of service (DEP violation and application crash) via a crafted FLV file.

Примечания

  • https://trac.videolan.org/vlc/ticket/13389

  • http://seclists.org/fulldisclosure/2015/Jan/72

  • This was originally reported for VLC; but upstream states that it is in libavcodec

  • This seems to be Windows-specific issue, the reported error couldn't be reproduced

  • with any ffmpeg release and libav/0.8.

Связанные уязвимости

ubuntu
около 11 лет назад

The picture_pool_Delete function in misc/picture_pool.c in VideoLAN VLC media player 2.1.5 allows remote attackers to execute arbitrary code or cause a denial of service (DEP violation and application crash) via a crafted FLV file.

nvd
около 11 лет назад

The picture_pool_Delete function in misc/picture_pool.c in VideoLAN VLC media player 2.1.5 allows remote attackers to execute arbitrary code or cause a denial of service (DEP violation and application crash) via a crafted FLV file.

github
больше 3 лет назад

The picture_pool_Delete function in misc/picture_pool.c in VideoLAN VLC media player 2.1.5 allows remote attackers to execute arbitrary code or cause a denial of service (DEP violation and application crash) via a crafted FLV file.