Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Tixxdz

Researcher fromDZCORE Labs
#36813of 53,634
7.5Total CVSS
Vulnerabilities · 1
PT-2014-2078
7.5
2014-12-26
Videolan · Vlc Media Player · CVE-2010-2062
**Name of the Vulnerable Software and Affected Versions** VLC media player versions prior to 1.0.1 MPlayer versions prior to r29447 **Description** The issue is related to an integer underflow in the `real get rdt chunk` function, which can be exploited by remote attackers to execute arbitrary code. This is achieved by providing a crafted length value in an RDT chunk header. **Recommendations** For VLC media player versions prior to 1.0.1, update to version 1.0.1 or later to resolve the issue. For MPlayer versions prior to r29447, update to version r29447 or later to resolve the issue. As a temporary workaround, consider restricting access to the `real get rdt chunk` function in the affected modules until a patch is available.