CVE-2013-6283: Input Validation
VideoLAN VLC Media Player 2.0.8 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a URL in a m3u file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6283?
CVE-2013-6283 is classified as a high severity vulnerability due to its potential to cause a denial of service and possibly allow arbitrary code execution.
How do I fix CVE-2013-6283?
To fix CVE-2013-6283, update VLC Media Player to version 2.0.9 or later.
What systems are affected by CVE-2013-6283?
CVE-2013-6283 affects VLC Media Player versions 2.0.8 and earlier, as well as several earlier major releases.
What kind of attack does CVE-2013-6283 enable?
CVE-2013-6283 enables remote attackers to crash VLC Media Player and potentially execute arbitrary code through crafted m3u files.
Who is the vendor for the CVE-2013-6283 vulnerability?
The vendor for the CVE-2013-6283 vulnerability is VideoLAN, the organization responsible for VLC Media Player.