vendor:
VLC Media Player
by:
Dr_IDE
7.5
CVSS
HIGH
Remote Stack Overflow
CWE
Product Name: VLC Media Player
Affected Version From: VLC Media Player version 1.0.2
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP SP2, XP SP3, Windows 7 RC1
VLC Media Player 1.0.2 smb:// URI Handling Remote Stack Overflow PoC
This is a proof-of-concept exploit for a remote stack overflow vulnerability in VLC Media Player version 1.0.2. The vulnerability occurs when handling smb:// URIs. By sending a specially crafted URI, an attacker can trigger a stack overflow and potentially execute arbitrary code on the target system.
Mitigation:
It is recommended to update VLC Media Player to the latest version to mitigate this vulnerability.