First published: Thu Dec 06 2007(Updated: )
A certain ActiveX control in axvlc.dll in VideoLAN VLC 0.8.6 before 0.8.6d allows remote attackers to execute arbitrary code via crafted arguments to the (1) addTarget, (2) getVariable, or (3) setVariable function, resulting from a "bad initialized pointer," aka a "recursive plugin release vulnerability."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Videolan Vlc Media Player | =0.8.6b | |
Videolan Vlc Media Player | =0.8.6 | |
Videolan Vlc Media Player | =0.8.6a |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.