CVE-2011-1087
Gentoo Linux Security Advisory 201411-01
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
Buffer overflow in VideoLAN VLC media player 1.0.5 allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted .mp3 file that is played during bookmark creation.
Desbordamiento de búfer en VideoLAN VLC media player v1.0.5 permite provocar, a atacantes remotos asistidos por un usuario local, una denegación de servicio (por corrupción de memoria y bloqueo de la aplicación) o posiblemente ejecutar código arbitrario a través de un archivo mp3 debidamente modificado que se reproduce durante la creación de un marcador.
Multiple vulnerabilities have been found in VLC, the worst of which could lead to user-assisted execution of arbitrary code. Versions less than 2.1.2 are affected.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2011-02-24 CVE Reserved
- 2011-05-03 CVE Published
- 2024-08-06 CVE Updated
- 2024-08-06 First Exploit
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (9)
URL | Tag | Source |
---|---|---|
http://openwall.com/lists/oss-security/2011/03/02/3 | Mailing List | |
http://openwall.com/lists/oss-security/2011/03/03/8 | Mailing List | |
http://openwall.com/lists/oss-security/2011/03/03/9 | Mailing List | |
http://openwall.com/lists/oss-security/2011/03/28/7 | Mailing List | |
http://www.osvdb.org/62728 | Vdb Entry | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14532 | Signature |
URL | Date | SRC |
---|---|---|
http://www.securityfocus.com/bid/38569 | 2024-08-06 | |
http://www.zeroscience.mk/en/vulnerabilities/ZSL-2010-4931.php | 2024-08-06 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/38853 | 2017-09-19 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Videolan Search vendor "Videolan" | Vlc Media Player Search vendor "Videolan" for product "Vlc Media Player" | 1.0.5 Search vendor "Videolan" for product "Vlc Media Player" and version "1.0.5" | - |
Affected
|