VDB
GCVE-110-MAGEIA-2020-272
GCVE-110-MAGEIA-2020-272
Advisory Published
Updated vlc packages fixes security vulnerability:
A heap-based buffer overflow in the hxxx_AnnexB_to_xVC function in
modules/packetizer/hxxx_nal.c in VideoLAN VLC media player before 3.0.11
allows remote attackers to cause a denial of service (application crash)
or execute arbitrary code via a crafted H.264 Annex-B video (.avi for
example) file (CVE-2020-13428).
The vlc package has been updated to version 3.0.11, fixing this issue and
other bugs.
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | vlc | 0 (affected), 3.0.11-1.mga7 (unaffected) | — |
Aliases
Browse GCVE Records
74,581 records in the GCVE database · Updated July 24, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.