RULE(RULE ID:311271)

Rule General Information
Release Date: 2010-03-09
Rule Name: VideoLAN VLC real.c ReadRealIndex Real Demuxer integer Overflow Vulnerability (CVE-2008-5276)
Severity:
CVE ID:
Rule Protection Details
Description: Integer overflow in the ReadRealIndex function in real.c in the Real demuxer plugin in VideoLAN VLC media player 0.9.0 through 0.9.7 allows remote attackers to execute arbitrary code via a malformed RealMedia (.rm) file that triggers a heap-based buffer overflow.
Impact: Remote code execution
Affected OS: Network Device, Solaris, FreeBSD, Windows, Other Unix, Linux
Reference: SecurityFocusBID:32545
CVE-2008-5276
Solutions
Update vendor's patch.