CVE-2019-5460: Double Free
Published Jul 30, 2019
·Updated
Double Free in VLC versions <= 3.0.6 leads to a crash.
Affected Software
5 affected components
Videolan VLC Media Player<=3.0.6
openSUSE Backports=sle-15
openSUSE Backports=sle-15-sp1
openSUSE Leap=15.0
openSUSE Leap=15.1
Event History
Jul 30, 2019
CVE Published
via MITRE·08:38 PM
Data Sourced
via MITRE·08:38 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-5460?
CVE-2019-5460 is a vulnerability in VLC media player versions <= 3.0.6 that leads to a crash due to a double free.
2
What is the severity of CVE-2019-5460?
The severity of CVE-2019-5460 is medium with a CVSS score of 5.5.
3
Which software versions are affected by CVE-2019-5460?
VLC media player versions up to and including 3.0.6 are affected by CVE-2019-5460.
4
How can I fix CVE-2019-5460?
To fix CVE-2019-5460, update your VLC media player to a version higher than 3.0.6.
5
Is there any additional information available about CVE-2019-5460?
Yes, you can find additional information about CVE-2019-5460 in the references provided.