vendor:
VLC media player
by:
shinnai
7.5
CVSS
HIGH
Denial of Service
20
CWE
Product Name: VLC media player
Affected Version From: 0.8.6a
Affected Version To: 0.8.6a
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP Professional SP2
VLC media player 0.8.6a Denial of Service
The vulnerability allows remote attackers to cause a denial of service (application crash) via a long string in a .m3u file.
Mitigation:
Update to a version later than 0.8.6a.