VDB
GCVE-110-MAGEIA-2013-241
GCVE-110-MAGEIA-2013-241
Advisory Published
2.0.8
Demux:
* sgimb: use after free
(fixes #8724 https://trac.videolan.org/vlc/ticket/8724 )
* Improve resistance and checking against malformed MKV files
(Check element size before reading it. This should avoid integer
overflows inside the libebml causing heap buffer overflow.
Since new called by the lib is limited to SIZE_MAX bytes.)
Access:
* qtsound: fix crash when freeing memory
2.0.7
Input:
* Fix memory exhaustion vulnerability when playing specifically crafted
playlist files.
(stream_ReadLine: correctly return an error on overflow
fixes #7361 https://trac.videolan.org/vlc/ticket/7361 )
HTTP Interface:
* lua http: Fix two xss vulnerabilities (CVE-2013-3565)
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | vlc | 0 (affected), 2.0.8-0.2.mga2 (unaffected), 0 (affected), 2.0.8-0.2.mga2.tainted (unaffected) | — |
| Mageia | vlc | 0 (affected), 2.0.8-2.mga3 (unaffected), 2.0.8-2.mga3.tainted (unaffected), 0 (affected) | — |
Aliases
References
Browse GCVE Records
74,265 records in the GCVE database · Updated July 22, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.