← Back

CVE-2008-4686

nvd nist
Published: Oct 22, 2008Modified: Apr 23, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Multiple integer overflows in ty.c in the TY demux plugin (aka the TiVo demuxer) in VideoLAN VLC media player, probably 0.9.4, might allow remote attackers to execute arbitrary code via a crafted .ty file, a different vulnerability than CVE-2008-4654.

Affected (5)

1 product
Vlc Media Player
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Videolan
Version 0.9.0
Version 0.9.1
Version 0.9.2
Version 0.9.3
Version 0.9.4

Related CWEs

Timeline

No history available yet.