First published: Thu Jul 18 2019(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Videolan Vlc Media Player | <=3.0.7 | |
openSUSE Backports SLE | =15.0 | |
openSUSE Backports SLE | =15.0-sp1 | |
openSUSE Leap | =15.0 | |
openSUSE Leap | =15.1 | |
Debian Debian Linux | =9.0 | |
Debian Debian Linux | =10.0 | |
Canonical Ubuntu Linux | =18.04 | |
Canonical Ubuntu Linux | =19.04 | |
debian/vlc | 3.0.21-0+deb11u1 3.0.21-0+deb12u1 3.0.21-2 |
http://git.videolan.org/?p=vlc/vlc-3.0.git;a=commit;h=2b4f9d0b0e0861f262c90e9b9b94e7d53b864509
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-13962 is a vulnerability in the VideoLAN VLC media player that allows for a heap-based buffer over-read.
CVE-2019-13962 has a severity rating of 9.8, which is considered critical.
The affected software for CVE-2019-13962 includes VideoLAN VLC media player versions up to 3.0.7.
You can fix CVE-2019-13962 by updating to VLC media player version 3.0.8 or later.
You can find more information about CVE-2019-13962 in the references provided.