ghacks Technology News

VLC Player Vulnerability

Torrentfreak are reporting that two vulnerabilities have been discovered in VLC Player which allow execution of arbitrary code. The second vulnerability has already been fixed in the newest version of VLC which is available for download on the developers homepage. The first vulnerability however can be exploited to cause stack-based buffer overflows when loading subtitles in VLC.

The solution given by the security company that discovered the vulnerability is to load only subtitles from trusted source or no subtitles at all until an official fix has been posted by the developers ov VLC.

Another option would be to switch to another player for the time being. SMPlayer, my favorite player, is another good choice which does not have this vulnerability.

Enjoyed the article?: Then sign-up for our free newsletter or RSS feed to kick off your day with the latest technology news and tips, or share the article with your friends and contacts on Facebook or Twitter.

Related Articles:

Real Player Internet Explorer vulnerability
Adobe Reader, Acrobat and Flash Player Zero Day Vulnerability
Adobe Flash Player Clickjacking Vulnerability
Google Chrome Address Spoofing Vulnerability
LastPass Fixes XSS Vulnerability, Improves Security



About the Author:Martin Brinkmann is a journalist from Germany who founded Ghacks Technology News Back in 2005. He is passionate about all things tech and knows the Internet and computers like the back of his hand. You can follow Martin on Facebook or Twitter.

Author: , Wednesday March 19, 2008 -
Tags:, , , ,


Responses so far:

  1. waldwicht says:

    Is there yet a way to avoid the “Pause”-lag?

  2. vance says:

    Also try MPC, I use 3 players VLC, SMplayer and MPC. Not every Player can actually play .avi files.

Leave a Reply   Follow Ghacks   Subscribe To Comment Rss

Subscribe without commenting

© 2005-2012 Ghacks.net. All Rights Reserved. Privacy Policy - About Us