Thread Rating:
  • 1 Vote(s) - 5 Average
  • 1
  • 2
  • 3
  • 4
  • 5
VLC Player Gets Patched for Two High-Severity Bugs
#1
Quote:Maintainers of the popular open-source VLC media player patched two high-severity bugs Friday. The flaws were an out-of-bound write vulnerability and a stack-buffer-overflow bug. Developers behind the software, VideoLAN, said the patches were two of 33 fixes being pushed out to the media player and part of a new bug bounty program funded by European Commission.
 
“This high number of security issues is due to the sponsoring of a bug bounty program funded by the European Commission, during the Free and Open Source Software Audit (FOSSA) program,” wrote Jean-Baptiste Kempf, president of VideoLAN and open source developer in a post outlining the patches.
 
In January, the EU funded 14 bug bounty programs in hopes of keeping open source projects that EU institutions rely on secure. The program is maintained by the HackerOne bounty program facilitator.

Details are scant on the two high-severity bugs and how they could be exploited. Impacted is VLC 3.0.7 and the EU-FOSSA release of the player, along with code tied to the upcoming 4.0 release of the player.
“We just released VLC 3.0.7, a minor update of VLC branch 3.0.x. This release is a bit special, because it has more security issues fixed than any other version of VLC,” Kempf wrote.

SOURCE: https://threatpost.com/vlc-player-gets-p...gs/145518/
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Mozilla Firefox Browser 124.0
Mozilla Firefox Br...harlan4096 — 07:11
Free Download Manager 6.21.0.5639
Changes in 6.21.0.5...harlan4096 — 07:09
K-Lite Codec Pack 18.2.0 / 18.2.2 Update
Changes in 18.2.0 ...harlan4096 — 07:09
ON1 Photo RAW 2024
  ON1 NoNoise ...jasonX — 07:05
GFYI [Official] EaseUS Data Recovery Wiz...
      We at Ge...jasonX — 06:02

[-]
Birthdays
Today's Birthdays
avatar (41)Hectorvot
avatar (49)knowhanPluts
avatar (37)Williamengiz
Upcoming Birthdays
avatar (42)gapedDow
avatar (36)snorydar
avatar (44)qaqapeti
avatar (42)battsourIonix
avatar (41)CedricSek
avatar (36)Charlesfibre
avatar (41)artmaGoork

[-]
Online Staff
harlan4096's profile harlan4096
Administrator
jasonX's profile jasonX
Administrator

>