CVE-2019-5459: Integer Underflow
Published Jul 30, 2019
·Updated
An Integer underflow in VLC Media Player versions < 3.0.7 leads to an out-of-band read.
Affected Software
5 affected components
Videolan VLC Media Player<3.0.7
openSUSE Backports SLE=15.0-sp1
openSUSE Backports=sle-15
openSUSE Leap=15.0
openSUSE Leap=15.1
Event History
Jul 30, 2019
CVE Published
via MITRE·08:24 PM
Data Sourced
via MITRE·08:24 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-5459?
CVE-2019-5459 is an Integer underflow vulnerability in VLC Media Player versions < 3.0.7 that leads to an out-of-band read.
2
What software versions are affected by CVE-2019-5459?
VLC Media Player versions < 3.0.7 are affected by CVE-2019-5459.
3
What is the severity of CVE-2019-5459?
CVE-2019-5459 has a severity rating of 7.1 (high).
4
How can I fix CVE-2019-5459?
To fix CVE-2019-5459, upgrade to VLC Media Player version 3.0.7 or later.
5
Where can I find more information about CVE-2019-5459?
You can find more information about CVE-2019-5459 at the following references: [link1](http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00005.html), [link2](http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00037.html), [link3](http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00040.html).