First published: Thu Jun 13 2019(Updated: )
A Buffer Overflow in VLC Media Player < 3.0.7 causes a crash which can possibly be further developed into a remote code execution exploit.
Credit: support@hackerone.com support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
Videolan Vlc Media Player | <3.0.7 | |
debian/vlc | 3.0.21-0+deb11u1 3.0.21-0+deb12u1 3.0.21-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-5439 is a vulnerability in VLC Media Player < 3.0.7 that can cause a crash and potentially be developed into a remote code execution exploit.
The severity of CVE-2019-5439 is medium, with a severity value of 6.5.
VLC Media Player versions prior to 3.0.7 are affected by CVE-2019-5439.
To fix CVE-2019-5439, update VLC Media Player to version 3.0.7 or higher.
You can find more information about CVE-2019-5439 in the references section of the vulnerability description.