CVE-2021-25801

HIGH7.1EPSS 2.3%

vlc - security update

發布日:2021/7/26修改日:2026/3/9
也稱為:DLA-2728-1

描述

A buffer overflow vulnerability in the __Parse_indx component of VideoLAN VLC Media Player 3.0.11 allows attackers to cause an out-of-bounds read via a crafted .avi file.

受影響套件(2)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1HIGH7.1CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H

參考連結(1)