Potential heap based buffer overflow in ParseJSS in VideoLAN VLC before 2.2.5 due to skipping NULL terminator in an input string allows attackers to execute arbitrary code via a crafted subtitles file.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: checkpoint
Published: 2017-05-23T21:00:00
Updated: 2024-08-05T16:34:22.584Z
Reserved: 2017-04-28T00:00:00
Link: CVE-2017-8311
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-05-23T21:29:00.227
Modified: 2023-11-07T02:50:24.120
Link: CVE-2017-8311
Redhat
No data.