CVE-2009-2484: Buffer Overflow
Stack-based buffer overflow in the Win32AddConnection function in modules/access/smb.c in VideoLAN VLC media player 0.9.9, when running on Microsoft Windows, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long smb URI in a playlist file.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2484?
The severity of CVE-2009-2484 is considered critical due to its potential to cause application crashes and execute arbitrary code.
How do I fix CVE-2009-2484?
To fix CVE-2009-2484, update VLC media player to a version newer than 0.9.9 where the vulnerability has been addressed.
What does CVE-2009-2484 affect?
CVE-2009-2484 affects VideoLAN VLC media player version 0.9.9 running on Microsoft Windows.
Is CVE-2009-2484 a denial of service vulnerability?
Yes, CVE-2009-2484 can lead to a denial of service by crashing the VLC media player through a stack-based buffer overflow.
What type of vulnerability is CVE-2009-2484?
CVE-2009-2484 is a stack-based buffer overflow vulnerability found in the Win32AddConnection function of VLC media player.