CVE-2008-0984: Critical severity miro vulnerability
The MP4 demuxer (mp4.c) for VLC media player 0.8.6d and earlier, as used in Miro Player 1.1 and earlier, allows remote attackers to overwrite arbitrary memory and execute arbitrary code via a malformed MP4 file.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-0984?
The severity of CVE-2008-0984 is considered high due to its potential to allow remote code execution.
How do I fix CVE-2008-0984?
To fix CVE-2008-0984, update VLC media player to version 0.8.6e or later and Miro Player to version 1.1 or later.
What does CVE-2008-0984 affect?
CVE-2008-0984 affects VLC media player versions 0.8.6d and earlier, as well as Miro Player versions 1.1 and earlier.
What kind of attack does CVE-2008-0984 allow?
CVE-2008-0984 allows remote attackers to overwrite arbitrary memory and execute arbitrary code through a malformed MP4 file.
Is there a workaround for CVE-2008-0984?
The best workaround for CVE-2008-0984 is to avoid opening untrusted MP4 files until the software is updated.