Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w2cf-f7gp-7p29

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

demux/mkv/mkv.hpp in the MKV demuxer plugin in VideoLAN VLC media player 1.1.6.1 and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary commands via a crafted MKV (WebM or Matroska) file that triggers memory corruption, related to "class mismatching" and the MKV_IS_ID macro.

demux/mkv/mkv.hpp in the MKV demuxer plugin in VideoLAN VLC media player 1.1.6.1 and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary commands via a crafted MKV (WebM or Matroska) file that triggers memory corruption, related to "class mismatching" and the MKV_IS_ID macro.

EPSS

Процентиль: 99%
0.7325
Высокий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 15 лет назад

demux/mkv/mkv.hpp in the MKV demuxer plugin in VideoLAN VLC media player 1.1.6.1 and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary commands via a crafted MKV (WebM or Matroska) file that triggers memory corruption, related to "class mismatching" and the MKV_IS_ID macro.

nvd
почти 15 лет назад

demux/mkv/mkv.hpp in the MKV demuxer plugin in VideoLAN VLC media player 1.1.6.1 and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary commands via a crafted MKV (WebM or Matroska) file that triggers memory corruption, related to "class mismatching" and the MKV_IS_ID macro.

debian
почти 15 лет назад

demux/mkv/mkv.hpp in the MKV demuxer plugin in VideoLAN VLC media play ...

EPSS

Процентиль: 99%
0.7325
Высокий

Дефекты

CWE-20