oss-sec mailing list archives

Re: Vulnerabilities in VLC 2.1.5


From: Fabian Yamaguchi <fabian.yamaguchi () cs uni-goettingen de>
Date: Tue, 20 Jan 2015 22:03:29 +0100

Thank you!

On 01/20/2015 09:58 PM, cve-assign () mitre org wrote:
* Buffer overflow in updater:

https://github.com/videolan/vlc/commit/fbe2837bc80f155c001781041a54c58b5524fc14

Use CVE-2014-9625 for this integer truncation caused by a cast to
size_t (with resultant buffer overflow).


...

Attachment: signature.asc
Description: OpenPGP digital signature


Current thread: