CVE-2019-5439

Name
CVE-2019-5439
Description
A Buffer Overflow in VLC Media Player < 3.0.7 causes a crash which can possibly be further developed into a remote code execution exploit.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Third Party Advisory https://hackerone.com/reports/484398
BID http://www.securityfocus.com/bid/108769
UBUNTU https://usn.ubuntu.com/4074-1/
SUSE http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00005.html
SUSE http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00040.html
SUSE http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00037.html
GENTOO https://security.gentoo.org/glsa/201908-23
SUSE http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00081.html

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:videolan:vlc_media_player:*:*:*:*:*:*:*:* vlc_media_player >= None < 3.0.7

Vulnerable and fixed packages

Source package Branch Version Maintainer Status