Forum     

Go Back   Digit Technology Discussion Forum > News > Technology News
Register FAQ Calendar Mark Forums Read

Technology News News from the world of technology that our members stumble across. NOTE: Sources to be mentioned at the beginning of each post.


Closed Thread
 
LinkBack Thread Tools Display Modes
Old 19-03-2008, 12:46 PM   #1 (permalink)
Banned
 
slugger's Avatar
 
Join Date: May 2004
Location: Baudland
Posts: 2,433
Default VLC Media Player Vulnerable to Attack


just came across this piece of NEWS
Quote:
A flaw in the widely-used open-source VLC media player could allow an attacker to execute harmful code on a PC.

The problem stems from a buffer overflow that can occur when the player processes subtitle files used for movies, according to a security advisory.


The vulnerability existed before VLC was upgraded to version 0.8.6e in late February, but the bug appears to have escaped the last round of patches, wrote Luigi Auriemma in a note.

"The funny thing is that my old proof-of-concept was built just to test this specific buffer overflow, and in fact it works on the new VLC version too without modifications," Auriemma wrote.

Video files can contain a link to a separate subtitle file, which VLC automatically loads when it plays the video. An attacker could use the buffer overflow flaw in VLC to execute malicious code contained in a subtitle file, and thus tamper with a PC. The flaw affects VLC players running on Windows, Mac, BSD and possibly more operating systems, Auriemma wrote.

The VLC media player is part of the VideoLAN project. The player is free, and it is released under the GNU General Public License. VLC can also be used as a streaming media server for a variety of platforms.
SOURCE
slugger is offline  
Advertisements. Register and be a member of the community to get rid of them.
Advertisement

Old 19-03-2008, 07:52 PM   #2 (permalink)
In The Zone
 
pushkaraj's Avatar
 
Join Date: Oct 2006
Location: Mumbai
Posts: 430
Default Re: VLC Media Player Vulnerable to Attack

Nice info, thanks. I hav installed vlc but use it only when k-lite is unable to play a file......And that rarely happens
__________________
The statistics on sanity are that 1 out of every 4 humans is suffering from some form of mental illness:shock:
Think of your 3 best friends. If they are OK, then it's YOU:grin::grin::grin:
pushkaraj is offline  
Old 19-03-2008, 07:54 PM   #3 (permalink)
Human Spambot
 
Join Date: Jan 2007
Location: Lat 28.38°N , Longt 77.13°E
Posts: 2,431
Default Re: VLC Media Player Vulnerable to Attack

Don't use VLC MP, so no worry
ThinkFree is offline  
Old 19-03-2008, 08:07 PM   #4 (permalink)
Wise Old Owl
 
hullap's Avatar
 
Join Date: Dec 2006
Location: delhi
Posts: 1,429
Default Re: VLC Media Player Vulnerable to Attack

OMG,
Vlc is the best player out there.
Hope they release a patch now
hullap is offline  
Old 19-03-2008, 08:25 PM   #5 (permalink)
Banned
 
slugger's Avatar
 
Join Date: May 2004
Location: Baudland
Posts: 2,433
Default Re: VLC Media Player Vulnerable to Attack

simple soln till no patches realeased

learn the language b4 u watch the movie [instead of the other way round]

your chance at becoming a linguist
slugger is offline  
Old 19-03-2008, 08:32 PM   #6 (permalink)
In The Zone
 
pushkaraj's Avatar
 
Join Date: Oct 2006
Location: Mumbai
Posts: 430
Default Re: VLC Media Player Vulnerable to Attack

^^^LOLZ
__________________
The statistics on sanity are that 1 out of every 4 humans is suffering from some form of mental illness:shock:
Think of your 3 best friends. If they are OK, then it's YOU:grin::grin::grin:
pushkaraj is offline  
Old 19-03-2008, 08:44 PM   #7 (permalink)
=--=l33t=--=
 
ring_wraith's Avatar
 
Join Date: Oct 2007
Location: In Limbo
Posts: 722
Default Re: VLC Media Player Vulnerable to Attack

There is really no cause for alarm, as long as you get the .subs file from a verified trusted source.

If you are wary, just don't use subs.
__________________
Homer: God bless those pagans.
ring_wraith is offline  
Closed Thread

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Yikes!!! Virus attack! MP3 Player Fooched! Cyclone Software Q&A 5 23-10-2007 11:34 AM
play real media (.rm) files in windows media player mneo Tutorials 7 10-07-2007 08:30 PM
phpBB forums vulnerable to attack rohan Technology News 11 11-08-2006 02:11 PM
Can I watch all channels? <<media player or real player>> digidream Software Q&A 2 06-09-2005 04:42 PM
which is best media player? paul_007 QnA (read only) 2 04-02-2005 05:14 PM

 
Latest Threads
- by Tenida
- by Charan
- by Niilesh

Advertisement




All times are GMT +5.5. The time now is 06:27 PM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.

Search Engine Optimization by vBSEO 3.3.2