CVE-2014-9629 PUBLISHED

Integer overflow in the Encode function in modules/codec/schroedinger.c in VideoLAN VLC media player before 2.1.6 and 2.2.x before 2.2.1 allows remote attackers to conduct buffer overflow attacks and execute arbitrary code via a crafted length value.

EPSS 1.50% · 81.0th percentile

Risk Scores

EPSS Score
1.50%
81.0th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSvlc0, 2.0.8-1, 2.1.1-1

Timeline

References

Open in Interactive Console →