VDB

GCVE-110-MAGEIA-2020-272

GCVE-110-MAGEIA-2020-272
Advisory Published
Vulnetix · Advisory published July 4, 2020
Updated vlc packages fixes security vulnerability: A heap-based buffer overflow in the hxxx_AnnexB_to_xVC function in modules/packetizer/hxxx_nal.c in VideoLAN VLC media player before 3.0.11 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a crafted H.264 Annex-B video (.avi for example) file (CVE-2020-13428). The vlc package has been updated to version 3.0.11, fixing this issue and other bugs.

Affected Products

VendorProductVersionsPlatforms
Mageiavlc0 (affected), 3.0.11-1.mga7 (unaffected)

Browse GCVE Records

74,581 records in the GCVE database · Updated July 24, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›