vendor:
VLC media player
by:
Unknown
N/A
CVSS
N/A
Bad Pointer Initialization
CWE
Product Name: VLC media player
Affected Version From: 0.86
Affected Version To: 0.86c
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2007
VLC Activex Bad Pointer Initialization Vulnerability
A vulnerability has been found in the ActiveX control DLL (axvlc.dll) used by VLC player. This library contains three methods whose parameters are not correctly checked, and may produce a bad initialized pointer. By providing these functions specially crafted parameters, an attacker can overwrite memory zones and execute arbitrary code.
Mitigation:
Unknown