Zurück zur CVE-Übersicht
CVE-2020-26664
HIGH(7.8)CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Risk Signal Score20/100 — NIEDRIG
- CVSS 7.8 — Hoch
EPSS-Score
2%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
7.8
Technische Schwere
Beschreibung
A vulnerability in EbmlTypeDispatcher::send in VideoLAN VLC media player 3.0.11 allows attackers to trigger a heap-based buffer overflow via a crafted .mkv file.
Referenzen
- http://videolan.com
- https://gist.githubusercontent.com/henices/db11664dd45b9f322f8514d182aef5ea/raw/...
- https://lists.debian.org/debian-lts-announce/2022/06/msg00012.html
- https://security.gentoo.org/glsa/202101-37
- https://www.debian.org/security/2021/dsa-4834
- http://videolan.com
- http://vlc.com
- https://gist.githubusercontent.com/henices/db11664dd45b9f322f8514d182aef5ea/raw/...
- https://lists.debian.org/debian-lts-announce/2022/06/msg00012.html
- https://security.gentoo.org/glsa/202101-37