CVE-2016-5108 PUBLISHED

Buffer overflow in the DecodeAdpcmImaQT function in modules/codec/adpcm.c in VideoLAN VLC media player before 2.2.4 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted QuickTime IMA file.

EPSS 20.82% · 95.6th percentile

Risk Scores

EPSS Score
20.82%
95.6th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSvlc0, 2.0.8-1, 2.1.1-1
Ubuntu:16.04:LTSvlc0, 2.2.1-3, 2.2.1-5

Timeline

References

Open in Interactive Console →