CORE IMPACT v8 - Exploits Update (Thu Mar 05 2009)
VLC Media Player RealText Processing Stack Overflow Exploit
Exploits/Client Side [Windows]
Thu Mar 05 2009
This module exploits a vulnerability in VideoLan Media Player (VLC). A stack-based buffer overflow in the ParseRealText function in the Subtitle demux plugin (modules\demux\subtitle.c) in VLC Media Player 0.9.4 allows remote attackers to execute arbitrary code via a realtext RT media file with a header containing a crafted size value.
Exploits Vulnerabiltiy: CVE-2008-5036











