videolan/vlc-3.0

videolan/vlc-3.0

Releases84
Frequency2 months 2 weeks
Last Release
Stars121
VLC media player - 3.0 branch - All pull requests are ignored, please follow https://wiki.videolan.org/Sending_Patches_VLC/

CVE History

CVEPublishedCVSS v3CVSS v2
7.8 HIGH6.8 MEDIUM

A heap-based buffer overflow in the hxxx_AnnexB_to_xVC function in modules/packetizer/hxxx_nal.c in VideoLAN VLC media player before 3.0.11 for macOS/iOS allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a crafted H.264 Annex-B video (.avi for example) file.