Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Editor Blogs > Linux

December 21st, 2011, 11:00 GMT · By Silviu Stahie

BLOG

VLC 1.1.13 Fixes Security Issue

SHARE:

Adjust text size:

Enlarge picture
The VideoLAN organization has just released VLC 1.1.13, a multimedia player which can run lots of video formats, without the help of special codecs.

VLC 1.1.13 was only made available because of a single security problem that needed to be fixed (details follow).

When parsing the header of an invalid TY file, the heap might have become corrupted, and if successful a malicious third party could have crashed the VLC media player process.

Because of this, arbitrary code execution might be possible on some systems, though this is unconfirmed.

As usual, users are asked to refrain from opening files, from untrusted third parties, or to access untrusted remote sites, until the new VLC 1.1.13 version is installed.

An alternative solution is available: Users can remove the TY demux plugin which in turn would prevent the accidental opening of TiVo files.

Download VLC 1.1.13 right now from Softpedia.

TELL US WHAT YOU THINK:

3,019 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Download and Test LibreOffice 3.5.0 Beta 1

PUIAS Linux 6.2 Based on RHEL 6.2

CentOS 6.2 Is Now Available for Download

Sabily 11.10 Screenshot Tour

Oracle Enterprise Linux 6.2 Has Two Kernels

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM