CVE-2019-18278

When executing VideoLAN VLC media player 3.0.8 with libqt on Windows, Data from a Faulting Address controls Code Flow starting at libqt_plugin!vlc_entry_license__3_0_0f+0x00000000003b9aba. NOTE: the VideoLAN security team indicates that they have not been contacted, and have no way of reproducing this issue.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:videolan:vlc_media_player:3.0.8:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:32

Type Values Removed Values Added
References () https://code610.blogspot.com/2019/10/random-bytes-in-vlc-308.html - Exploit, Third Party Advisory () https://code610.blogspot.com/2019/10/random-bytes-in-vlc-308.html - Exploit, Third Party Advisory

Information

Published : 2019-10-23 14:15

Updated : 2024-11-21 04:32


NVD link : CVE-2019-18278

Mitre link : CVE-2019-18278

CVE.ORG link : CVE-2019-18278


JSON object : View

Products Affected

videolan

  • vlc_media_player

microsoft

  • windows