Buffer Overflow Vulnerability in VideoLAN VLC Media Player
CVE-2014-9628
7.8HIGH
What is CVE-2014-9628?
A buffer overflow vulnerability exists in the MP4_ReadBox_String function within the VideoLAN VLC Media Player prior to version 2.1.6. This flaw allows attackers to exploit crafted MP4 files, potentially triggering an unintended zero-size memory allocation, leading to buffer overflow attacks. Successful exploitation could permit malicious actors to execute arbitrary code on the target system, posing a significant security risk.