VLC²¥·ÅÆ÷¶à¸ö·ì϶°²È«¹«¸æ
°ä²¼¹¦·ò 2019-08-21? ·ì϶±àºÅºÍ¼¶±ð
CVE±àºÅ£ºCVE-2019-13962£¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬CVSS·ÖÖµ£º9.8
? Ó°Ïì°æ±¾
ÊÜÓ°ÏìµÄ°æ±¾
VLC 3.0.2 to 3.0.7.1
? ·ì϶¸ÅÊö
VideoLAN VLC media playerÊÇ·¨¹úVideoLAN×éÖ¯µÄÒ»¿îÃâ·Ñ¡¢¿ªÔ´µÄ¿çƽ̨¶àýÌå²¥·ÅÆ÷£¨Ò²ÊÇÒ»¸ö¶àýÌå¿ò¼Ü£©¡£¸Ã²úÆ·Ö§³Ö²¥·Å¶àÖÖ½éÖÊ£¨Îļþ¡¢¹âÅ̵ȣ©¡¢¶àÖÖÒôÊÓÆµÌåʽ£¨WMV,MP3µÈ£©µÈ¡£
CVE-2019-13602
VideoLAN VLC media playerÖеÄmodules/demux/mp4/mp4.cÎļþµÄ¡®MP4_EIA608_Convert()¡¯º¯Êý´æÔÚÊý×ÖÃýÎó·ì϶¡£¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδÕýÈ·ÍÆËã»òת»»Ëù²úÉúµÄÊý×Ö¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶µ¼ÖÂÕûÊýÒç³ö»ò·ûºÅÃýÎóµÈ¡£
VideoLAN VLC media playerÖеÄmodules/codec/avcodec/video.cÎļþµÄlavc_CopyPicture´æÔÚ»º³åÇøÃýÎó·ì϶¡£¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úÆ·ÔÚÄÚ´æÉÏÖ´ÐвÙ×÷ʱ£¬Î´ÕýÈ·ÑéÖ¤Êý¾ÝÌìǵ£¬µ¼ÖÂÏò¹ØÁªµÄÆäËûÄÚ´æµØÎ»ÉÏÖ´ÐÐÁËÃýÎóµÄ¶Áд²Ù×÷¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶µ¼Ö»º³åÇøÒç³ö»ò¶ÑÒç³öµÈ¡£
? ·ì϶ÑéÖ¤
ÔÝÎÞPOC/EXP¡£
? ½¨¸´½¨Òé
? ²Î¿¼Á´½Ó


¾©¹«Íø°²±¸11010802024551ºÅ