Intrusion Prevention

VideoLan.VLC.MMS.Protocol.Handling.Heap.Overflow

Description

This indicates an attack attempt against a buffer overflow vulnerability in
Videolan VLC.
The vulnerability is caused by an error when the vulnerable software handles
MMST traffic. It allows a remote attacker to execute arbitrary code via sending a crafted MMST stream.

Affected Products

Videolan VLC version 0.8.6i and later versions.

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

Upgrade to the latest version, available from the web site.
http://www.videolan.org/

CVE References

CVE-2008-3794