CVE-2019-13962
CRITICAL
9.8
CVSS Severity Score
Vulnerability Description
lavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VLC media player through 3.0.7 has a heap-based buffer over-read because it does not properly validate the width and height.
Affected Platforms (CPE)
📦
Videolan
Vlc Media Player
<= 3.0.7📦
Opensuse
Backports Sle
= 15.0📦
Opensuse
Backports Sle
= 15.0💻
Opensuse
Leap
= 15.0💻
Opensuse
Leap
= 15.1💻
Debian
Debian Linux
= 9.0💻
Debian
Debian Linux
= 10.0💻
Canonical
Ubuntu Linux
= 18.04💻
Canonical
