Heap out-of-bound read in ParseJSS in VideoLAN VLC before 2.2.5 due to missing check of string termination allows attackers to read data beyond allocated memory and potentially crash the process via a crafted subtitles file.
References
Configurations
Information
Published : 2017-05-23 14:29
Updated : 2017-11-03 18:29
NVD link : CVE-2017-8313
Mitre link : CVE-2017-8313
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
videolan
- vlc_media_player