Attack (Attack ID:711306)

Release Date2015/04/22

Attack NameRTSP VLC Media Player RTSP Plugin Stack Buffer Overflow -2 (CVE-2013-6933)

Severity

BUG ID

CVE ID

 

Description

The vulnerability is due an error in VLC's embedded Live555 RTSP library, when handling RTSP requests. Incorrect handling of RTSP commands can result in a stack buffer overflow.
Impact:Remote code execution
Affected System:Windows, Linux
Additional References:CVE-2013-6933;CVE-2013-6934

 

Solution

Update vendor's patch.