First published: Wed Jun 27 2007(Updated: )
Integer overflow in the __status_Update function in stats.c VideoLAN VLC Media Player before 0.8.6c allows remote attackers to cause a denial of service (crash) via a WAV file with a large sample rate.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
VideoLAN VLC media player | <=0.8.6b |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3467 has a severity level of medium due to its potential for causing a denial of service.
To fix CVE-2007-3467, upgrade your VideoLAN VLC Media Player to version 0.8.6c or later.
CVE-2007-3467 affects VideoLAN VLC Media Player versions prior to 0.8.6c.
CVE-2007-3467 enables remote attackers to execute a denial of service attack by crashing the media player.
WAV files with large sample rates are particularly dangerous concerning CVE-2007-3467.