The parse_track_node function in modules/demux/playlist/xspf.c in the XSPF playlist parser in VideoLAN VLC media player before 1.0.6 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an empty location element in an XML Shareable Playlist Format (XSPF) document.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2014-12-26 12:59
Updated : 2014-12-29 12:57
NVD link : CVE-2010-1443
Mitre link : CVE-2010-1443
JSON object : View
CWE
Products Affected
videolan
- vlc_media_player