VDB

GCVE-110-MAGEIA-2013-241

GCVE-110-MAGEIA-2013-241
Advisory Published
Vulnetix · Advisory published August 9, 2013
2.0.8 Demux: * sgimb: use after free (fixes #8724 https://trac.videolan.org/vlc/ticket/8724 ) * Improve resistance and checking against malformed MKV files (Check element size before reading it. This should avoid integer overflows inside the libebml causing heap buffer overflow. Since new called by the lib is limited to SIZE_MAX bytes.) Access: * qtsound: fix crash when freeing memory 2.0.7 Input: * Fix memory exhaustion vulnerability when playing specifically crafted playlist files. (stream_ReadLine: correctly return an error on overflow fixes #7361 https://trac.videolan.org/vlc/ticket/7361 ) HTTP Interface: * lua http: Fix two xss vulnerabilities (CVE-2013-3565)

Affected Products

VendorProductVersionsPlatforms
Mageiavlc0 (affected), 2.0.8-0.2.mga2 (unaffected), 0 (affected), 2.0.8-0.2.mga2.tainted (unaffected)
Mageiavlc0 (affected), 2.0.8-2.mga3 (unaffected), 2.0.8-2.mga3.tainted (unaffected), 0 (affected)

Browse GCVE Records

74,265 records in the GCVE database · Updated July 22, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›