oss-sec mailing list archives

Re: CVE request: vlc


From: Josh Bressers <bressers () redhat com>
Date: Wed, 8 Jun 2011 15:46:57 -0400 (EDT)



----- Original Message -----
From http://www.videolan.org/vlc/releases/1.1.10.html :

"Security update regarding an integer overflow in xspf demuxer"

Looks like it's the following commit:

http://repo.or.cz/w/vlc.git/commitdiff/cd929923ff49175a501bb3e9553a683bc42ff61c



Please use CVE-2011-2194.

Thanks.

-- 
    JB


Current thread: