CORE IMPACT v9 - Exploits Update (Mon Aug 03 2009)
VLC Media Player RealText Processing Stack Overflow Exploit Update
Exploits/Client Side [Windows]
Mon Aug 03 2009
This module exploits a vulnerability in VideoLan Media Player (VLC). A stack-based buffer overflow in the ParseRealText function in the Subtitle demux plugin (modules\demux\subtitle.c) in VLC Media Player 0.9.4 allows remote attackers to execute arbitrary code via a realtext RT media file with a header containing a crafted size value.
Exploits Vulnerabiltiy: CVE-2008-5036











