VLC Media Player MKV File Parsing Remote Code Execution Vulnerability

  Severity: CRITICAL
  CVE Identifier: CVE-2011-0531
  Advisory Date: JUL 21, 2015

  DESCRIPTION

demux/mkv/mkv.hpp in the MKV demuxer plugin in VideoLAN VLC media player 1.1.6.1 and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary commands via a crafted MKV (WebM or Matroska) file that triggers memory corruption, related to "class mismatching" and the MKV_IS_ID macro.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1004585
  Trend Micro Deep Security DPI Rule Name: 1004585 - VLC Media Player MKV File Parsing Remote Code Execution Vulnerability

  AFFECTED SOFTWARE AND VERSION

  • videolan vlc_media_player 0.1.99b
  • videolan vlc_media_player 0.1.99e
  • videolan vlc_media_player 0.1.99f
  • videolan vlc_media_player 0.1.99g
  • videolan vlc_media_player 0.1.99h
  • videolan vlc_media_player 0.1.99i
  • videolan vlc_media_player 0.2.0
  • videolan vlc_media_player 0.2.60
  • videolan vlc_media_player 0.2.61
  • videolan vlc_media_player 0.2.62
  • videolan vlc_media_player 0.2.63
  • videolan vlc_media_player 0.2.70
  • videolan vlc_media_player 0.2.71
  • videolan vlc_media_player 0.2.72
  • videolan vlc_media_player 0.2.73
  • videolan vlc_media_player 0.2.80
  • videolan vlc_media_player 0.2.81
  • videolan vlc_media_player 0.2.82
  • videolan vlc_media_player 0.2.83
  • videolan vlc_media_player 0.2.90
  • videolan vlc_media_player 0.2.91
  • videolan vlc_media_player 0.2.92
  • videolan vlc_media_player 0.3.0
  • videolan vlc_media_player 0.3.1
  • videolan vlc_media_player 0.4.0
  • videolan vlc_media_player 0.4.1
  • videolan vlc_media_player 0.4.2
  • videolan vlc_media_player 0.4.3
  • videolan vlc_media_player 0.4.4
  • videolan vlc_media_player 0.4.5
  • videolan vlc_media_player 0.4.6
  • videolan vlc_media_player 0.5.0
  • videolan vlc_media_player 0.5.1
  • videolan vlc_media_player 0.5.2
  • videolan vlc_media_player 0.5.3
  • videolan vlc_media_player 0.6.0
  • videolan vlc_media_player 0.6.1
  • videolan vlc_media_player 0.6.2
  • videolan vlc_media_player 0.7.0
  • videolan vlc_media_player 0.7.2
  • videolan vlc_media_player 0.8.0
  • videolan vlc_media_player 0.8.1
  • videolan vlc_media_player 0.8.2
  • videolan vlc_media_player 0.8.4
  • videolan vlc_media_player 0.8.5
  • videolan vlc_media_player 0.8.6
  • videolan vlc_media_player 0.9.10
  • videolan vlc_media_player 0.9.2
  • videolan vlc_media_player 0.9.3
  • videolan vlc_media_player 0.9.4
  • videolan vlc_media_player 0.9.5
  • videolan vlc_media_player 0.9.6
  • videolan vlc_media_player 0.9.8a
  • videolan vlc_media_player 0.9.9
  • videolan vlc_media_player 1.0.0
  • videolan vlc_media_player 1.0.1
  • videolan vlc_media_player 1.0.2
  • videolan vlc_media_player 1.0.3
  • videolan vlc_media_player 1.0.4
  • videolan vlc_media_player 1.0.5
  • videolan vlc_media_player 1.0.6
  • videolan vlc_media_player 1.1.0
  • videolan vlc_media_player 1.1.1
  • videolan vlc_media_player 1.1.2
  • videolan vlc_media_player 1.1.3
  • videolan vlc_media_player 1.1.4
  • videolan vlc_media_player 1.1.5
  • videolan vlc_media_player 1.1.6
  • videolan vlc_media_player 1.1.6.1

Featured Stories