CVE-2008-0295

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
16/01/2008
Last modified:
09/04/2025

Description

Heap-based buffer overflow in modules/access/rtsp/real_sdpplin.c in the Xine library, as used in VideoLAN VLC Media Player 0.8.6d and earlier, allows user-assisted remote attackers to cause a denial of service (crash) or execute arbitrary code via long Session Description Protocol (SDP) data.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:videolan:vlc_media_player:*:*:*:*:*:*:*:* 0.8.6d (including)