CVE-2012-3377
EPSS 3.3%Published: 7/12/2012Modified: 4/28/2026
Also known as:DEBIAN-CVE-2012-3377
Description
Heap-based buffer overflow in the Ogg_DecodePacket function in the OGG demuxer (modules/demux/ogg.c) in VideoLAN VLC media player before 2.0.2 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted OGG file.
Affected packages (1)
- Debian/vlcfrom 0, < 2.0.2-1