VideoLAN VLC media player 2.2.x is prone to a use after free vulnerability which an attacker can leverage to execute arbitrary code via crafted MKV files. Failed exploit attempts will likely result in denial of service conditions.
References
Link Resource
http://seclists.org/fulldisclosure/2018/Jul/28 Exploit Mailing List Third Party Advisory
http://www.securitytracker.com/id/1041311 Third Party Advisory VDB Entry
https://www.debian.org/security/2018/dsa-4251 Third Party Advisory
https://www.exploit-db.com/exploits/45626/ Exploit Third Party Advisory VDB Entry
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-07-11T16:00:00

Updated: 2018-10-18T09:57:01

Reserved: 2018-05-29T00:00:00


Link: CVE-2018-11529

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-07-11T16:29:00.627

Modified: 2019-03-21T20:10:24.580


Link: CVE-2018-11529

JSON object: View

cve-icon Redhat Information

No data.

CWE