Unrated severityNVD Advisory· Published Aug 29, 2019· Updated Aug 5, 2024
CVE-2019-14778
CVE-2019-14778
Description
The mkv::virtual_segment_c::seek method of demux/mkv/virtual_segment.cpp in VideoLAN VLC media player 3.0.7.1 has a use-after-free.
Affected products
3- VideoLAN/VLC media playerdescription
- osv-coords2 versionspkg:rpm/opensuse/vlc&distro=openSUSE%20Leap%2015.1pkg:rpm/suse/vlc&distro=SUSE%20Package%20Hub%2015%20SP1
< 3.0.9.2-lp151.6.6.1+ 1 more
- (no CPE)range: < 3.0.9.2-lp151.6.6.1
- (no CPE)range: < 3.0.9.2-bp151.5.6.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- lists.opensuse.org/opensuse-security-announce/2020-04/msg00036.htmlmitrevendor-advisoryx_refsource_SUSE
- lists.opensuse.org/opensuse-security-announce/2020-04/msg00046.htmlmitrevendor-advisoryx_refsource_SUSE
- security.gentoo.org/glsa/201909-02mitrevendor-advisoryx_refsource_GENTOO
- usn.ubuntu.com/4131-1/mitrevendor-advisoryx_refsource_UBUNTU
- www.debian.org/security/2019/dsa-4504mitrevendor-advisoryx_refsource_DEBIAN
- seclists.org/bugtraq/2019/Aug/36mitremailing-listx_refsource_BUGTRAQ
- www.videolan.org/security/sb-vlc308.htmlmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.