Computer ForumsComputers  

Go Back   Computer Forums > The World Wide Web > Virus - Spyware Protection / Detection

Reply
 
LinkBack Thread Tools Display Modes
Old 03-19-2008, 12:05 PM   #1 (permalink)
Osiris
Security/Hacking Mod
 
Osiris's Avatar
 
Join Date: Jan 2005
Location: USA
Posts: 23,005
Default VLC Player Vulnerability

Torrentfreak are reporting that two vulnerabilities have been discovered in VLC Player which allow execution of arbitrary code. The second vulnerability has already been fixed in the newest version of VLC which is available for download on the developers homepage. The first vulnerability however can be exploited to cause stack-based buffer overflows when loading subtitles in VLC.
The solution given by the security company that discovered the vulnerability is to load only subtitles from trusted source or no subtitles at all until an official fix has been posted by the developers ov VLC.
Another option would be to switch to another player for the time being. SMPlayer, my favorite player, is another good choice which does not have this vulnerability.

VLC Player Vulnerability
Osiris is offline   Reply With Quote
Old 03-19-2008, 01:46 PM   #2 (permalink)
Redmo0n
Techalicious
 
Redmo0n's Avatar
 
Join Date: Aug 2007
Location: Perth, Australia
Posts: 1,002
Send a message via MSN to Redmo0n
Default Re: VLC Player Vulnerability

i use vlc thank you for this.

haven't updated in since i first got it so i will be and i wont be downloading any torrents for a bit.
__________________
E6550 @ 3.0Ghz
Asus P5KR
2x1GB OCZ DDR2 800
X1950GT
250GiG Western Digital
430Watt XP550 Thermaltake
Soprano Case
Windows Vista Ultimate
Redmo0n is offline   Reply With Quote
Old 03-19-2008, 02:11 PM   #3 (permalink)
Trotter
Tech-Forums Management
Das BanHammer
 
Trotter's Avatar
 
Join Date: Jan 2005
Location: The South
Posts: 13,308
Default Re: VLC Player Vulnerability

Never use subtitles, but I will be downloading the new one when I get home.
__________________
Avatar created by pokernod
Tech-Forums Management
~Das Banhammer~


CoolerMaster WaveMaster (black) - Vantec Stealth 520W
DFI LanParty UT nF4 SLI-D - AMD Athlon X2 4200+ - Zalman CNPS9500
2GB (2x1 GB) G.SKILL ZS - Seagate 80GB, 250GB SATA - Razer Lachesis
Sapphire X1950XT - NEC 19" MultiSync 1970GX

RegistryBooster, SpeedUpMyPC, SpyEraser, WinTasks - Uniblue Free Software Trials
Trotter is online now   Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Real Player Internet Explorer vulnerability Osiris Virus - Spyware Protection / Detection 0 03-13-2008 02:43 PM
Crysis 1.2 patch dario03 PC Gaming 29 03-08-2008 10:39 PM
My game files won't load, I have to create a new player leadrollerz PC Gaming 1 03-08-2008 05:33 PM
VLC media player andrewsvalesen Computer Audio & Multimedia 8 01-07-2008 04:19 AM
your thoughts on MOH airbourne Amd gt player PC Gaming 19 09-11-2007 09:34 PM


All times are GMT. The time now is 03:08 AM.


Powered by vBulletin® Version 3.7.1
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0 RC8