← Back

CVE-2012-3377

nvd nist
Published: Jul 12, 2012Modified: Apr 29, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Heap-based buffer overflow in the Ogg_DecodePacket function in the OGG demuxer (modules/demux/ogg.c) in VideoLAN VLC media player before 2.0.2 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted OGG file.

Affected (99)

1 product
Vlc Media Player
Configuration A
99 vulnerable
Vulnerable SoftwareAffected Versions
Videolan
Up to 2.0.1
Version 0.1.99a
Version 0.1.99b
Version 0.1.99c
Version 0.1.99d
Version 0.1.99e
Version 0.1.99f
Version 0.1.99g
Version 0.1.99h
Version 0.1.99i
Version 0.2.0
Version 0.2.50
Version 0.2.60
Version 0.2.61
Version 0.2.62
Version 0.2.63
Version 0.2.70
Version 0.2.71
Version 0.2.72
Version 0.2.73
Version 0.2.80
Version 0.2.81
Version 0.2.82
Version 0.2.83
Version 0.2.90
Version 0.2.91
Version 0.2.92
Version 0.3.0
Version 0.3.1
Version 0.4.0
Version 0.4.1
Version 0.4.2
Version 0.4.3-ac3
Version 0.4.3
Version 0.4.4
Version 0.4.5
Version 0.4.6
Version 0.5.0
Version 0.5.1
Version 0.5.2
Version 0.5.3
Version 0.6.0
Version 0.6.1
Version 0.6.2
Version 0.7.0
Version 0.7.1
Version 0.7.2
Version 0.8.0
Version 0.8.1337
Version 0.8.1
Version 0.8.2
Version 0.8.4
Version 0.8.4a
Version 0.8.5
Version 0.8.6
Version 0.8.6a
Version 0.8.6b
Version 0.8.6c
Version 0.8.6d
Version 0.8.6e
Version 0.8.6f
Version 0.8.6g
Version 0.8.6h
Version 0.8.6i
Version 0.9.0
Version 0.9.10
Version 0.9.1
Version 0.9.2
Version 0.9.3
Version 0.9.4
Version 0.9.5
Version 0.9.6
Version 0.9.8a
Version 0.9.9
Version 0.9.9a
Version 1.0.0
Version 1.0.1
Version 1.0.2
Version 1.0.3
Version 1.0.4
Version 1.0.5
Version 1.0.6
Version 1.1.0
Version 1.1.10.1
Version 1.1.10
Version 1.1.11
Version 1.1.13
Version 1.1.1
Version 1.1.2
Version 1.1.3
Version 1.1.4.1
Version 1.1.4
Version 1.1.5
Version 1.1.6.1
Version 1.1.6
Version 1.1.7
Version 1.1.8
Version 1.1.9
Version 2.0.0

Timeline

No history available yet.