Package: vlc
Version: 0.8.6.a.debian-1
Severity: important
Tags: security

VLC Media Player is prone to a denial-of-service vulnerability because
it fails to sufficiently handle user-supplied data.
Exploiting this issue can allow an attacker to crash the application,
effectively denying service to the user.
Version 0.8.6a is vulnerable; other versions may also be affected.

Reference:
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-0256
http://www.securityfocus.com/bid/22003

Note:
Please mention the CVE id in the changelog.

-- System Information:
Debian Release: 4.0
  APT prefers unstable
  APT policy: (500, 'unstable'), (1, 'experimental')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.18-3-486
Locale: LANG=pt_BR.UTF-8, LC_CTYPE=pt_BR.UTF-8 (charmap=UTF-8)


regards,
-- 
   .''`.  
  : :' :    Alex de Oliveira Silva | enerv
  `. `'     www.enerv.net
    `- 


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to