VLC Media Player SMB path URI Buffer Overflow

Strike ID:
E09-4x001
CVSS:
9.3 (AV:N/AC:M/Au:N/C:C/I:C/A:C)
False Positive:
f
Variants:
4
Year:
2009

Description

This strike exploits a vulnerability in VLC Media Player. The SMB server name and share name are copied into a fixed stack buffer without proper validation. When handling HTTP requests where the SMB URI is greater than 250 bytes the stack buffer will overflow.

CVE

Bid