First published: Wed Jan 16 2008(Updated: )
Heap-based buffer overflow in the libaccess_realrtsp plugin in VideoLAN VLC Media Player 0.8.6d and earlier on Windows might allow remote RTSP servers to cause a denial of service (application crash) or execute arbitrary code via a long string.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows | ||
VideoLAN VLC media player | <=0.8.6d |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-0296 is classified as a critical vulnerability due to its potential to cause remote code execution or complete denial of service.
To fix CVE-2008-0296, upgrade to VLC Media Player version 0.8.6e or later.
CVE-2008-0296 affects VideoLAN VLC Media Player 0.8.6d and earlier on Windows systems.
CVE-2008-0296 allows remote RTSP servers to execute arbitrary code or crash the application.
While CVE-2008-0296 is an older vulnerability, it can still pose a risk to systems using outdated versions of VLC Media Player.