The ReadMetaFromId3v2 function in taglib.cpp in the TagLib plugin in VideoLAN VLC media player 0.9.0 through 1.1.2 does not properly process ID3v2 tags, which allows remote attackers to cause a denial of service (application crash) via a crafted media file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-07T02:46:48.705Z

Reserved: 2010-08-04T00:00:00

Link: CVE-2010-2937

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2010-08-20T18:00:02.437

Modified: 2025-04-11T00:51:21.963

Link: CVE-2010-2937

cve-icon Redhat

No data.