PT-2024-10696 · Videolan · Vlc Media Player

Published

2024-11-19

·

Updated

2024-11-22

·

CVE-2018-9440

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions VLC media player (affected versions not specified)
Description The issue is related to a possible resource exhaustion due to improper input validation in the M3UParser.cpp file. This could lead to a denial of service, and no additional execution privileges are needed for exploitation. User interaction is required for the issue to be exploited.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2018-9440

Affected Products

Vlc Media Player