CVE-2007-6681

Publication date 17 January 2008

Last updated 24 July 2024


Ubuntu priority

Stack-based buffer overflow in modules/demux/subtitle.c in VideoLAN VLC 0.8.6d allows remote attackers to execute arbitrary code via a long subtitle in a (1) MicroDvd, (2) SSA, and (3) Vplayer file.

Status

Package Ubuntu Release Status
vlc 9.10 karmic
Fixed 0.8.6e-0ubuntu1
9.04 jaunty
Fixed 0.8.6e-0ubuntu1
8.10 intrepid
Fixed 0.8.6e-0ubuntu1
8.04 LTS hardy
Fixed 0.8.6e-0ubuntu1
7.10 gutsy Ignored end of life, was needed
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life