CVE-2010-0364: Buffer Overflow
Stack-based buffer overflow in VideoLAN VLC Media Player 0.8.6 allows user-assisted remote attackers to execute arbitrary code via an ogg file with a crafted Advanced SubStation Alpha Subtitle (.ass) file, probably involving the Dialogue field.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0364?
CVE-2010-0364 is rated as a high severity vulnerability due to its potential for allowing remote code execution.
How do I fix CVE-2010-0364?
To fix CVE-2010-0364, it is recommended to upgrade to a patched version of VLC Media Player, specifically versions later than 0.8.6.
What types of files are involved in CVE-2010-0364?
CVE-2010-0364 involves .ogg files that contain crafted Advanced SubStation Alpha Subtitle (.ass) files.
Who is affected by CVE-2010-0364?
Users of VideoLAN VLC Media Player version 0.8.6 are affected by CVE-2010-0364.
Can CVE-2010-0364 be exploited without user interaction?
Exploitation of CVE-2010-0364 typically requires user interaction to open the maliciously crafted media file.