Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v9 - Exploits Update (Mon Aug 03 2009)

VLC Media Player RealText Processing Stack Overflow Exploit Update

Exploits/Client Side  [Windows]




• Mon Aug 03 2009
This module exploits a vulnerability in VideoLan Media Player (VLC). A stack-based buffer overflow in the ParseRealText function in the Subtitle demux plugin (modules\demux\subtitle.c) in VLC Media Player 0.9.4 allows remote attackers to execute arbitrary code via a realtext RT media file with a header containing a crafted size value.

Exploits Vulnerabiltiy: CVE-2008-5036



< Back to Product Updates