CVE-2015-5949 REJECTED

VideoLAN VLC media player 2.2.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted 3GP file, which triggers the freeing of arbitrary pointers.

EPSS 7.45% · 91.7th percentile

Risk Scores

EPSS Score
7.45%
91.7th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSvlc2.2.2-4, 0, 2.2.1-3
Ubuntu:14.04:LTSvlc0, 2.0.8-1, 2.1.1-1

Timeline

References

Open in Interactive Console →